Loxada brings visibility, consistency and control to the networks your people work from.

Three risks your other tools don’t cover.

Loxada Secure, Loxada Verify and Loxada Quantum Secure each close a different risk: the network outside your control that your people work from, who is really on the other end of a request, and the cryptography protecting your data. They work independently, so you can start with the one that matches the risk in front of you.

Secure, managed connectivity at the uncontrolled network edge

Your people work from networks your organisation cannot see into or control: home Wi-Fi, hotels, coworking spaces, client sites.

Loxada Secure replaces that unmanaged connection with a managed router running Loxada’s secure firmware rather than the manufacturer’s, giving you a known, controlled network edge wherever your people work. Firmware is managed and updated centrally by Loxada, independent of the hardware manufacturer.

It fits any organisation whose people handle sensitive systems and data from networks outside its control, from financial services, healthcare and legal firms to any distributed or hybrid workforce.

Learn more about Loxada Secure

Hardware-backed human verification for distributed teams

Social engineering has become one of the most effective ways into an organisation, because it targets people rather than systems. A convincing impersonation, now helped along by realistic voice and video fakes, can turn a routine request into a costly one.

Loxada Verify uses a hardware-anchored presence check to give high-risk interactions a step that a convincing impersonation cannot reproduce, so your team can confirm a request is coming from a connected, authorised device before acting.

It is built for the moments where the stakes ride on someone’s identity: IT help desk requests, finance and payment approvals, and urgent instructions that appear to come from someone senior.

Learn more about Loxada Verify

Post-quantum cryptography at the managed network layer

Compliance timelines for post-quantum readiness are arriving faster than most application-layer migrations can keep up with.

Loxada Quantum Secure applies NIST-standard post-quantum cryptography (ML-KEM, ML-DSA and SLH-DSA) in a hybrid model at the managed network layer, so you can move toward quantum-resistant protection without re-engineering your applications, operating systems or existing tools.

It gives compliance, risk and security teams a documented step they can take toward post-quantum readiness now.

Learn more about Loxada Quantum Secure

Managed the same simple way

However many Loxada products you run, they share one admin portal and one relationship to manage them.

Devices arrive running Loxada’s secure firmware, ready to be set up: the user enters their work email, confirms a one-time code, and the device configures itself for your organization automatically.

Firmware and updates are handled centrally and applied automatically, so there is no patching cycle for your team to own and no expertise required from the people using it. 

Why the Network Edge Is a Risk

Not all routers are equal, and in locations outside your control you often have no idea what kind of network your users are connecting through. Shared office spaces, client sites, serviced offices, coworking hubs, hotels, holiday rentals, even home networks, all fall into the category of unmanaged infrastructure.

These environments quickly become IT blind spots. You cannot patch what you cannot see, and you cannot harden what you do not control. Even when users apply firmware updates, many of those updates still contain known vulnerabilities, and in most cases there is no visibility over whether updates are applied at all.

The NSA has flagged network edge devices as a priority target, precisely because they bridge external networks and internal resources and can give attackers a way to gain access or persist on networks (NSA, February 2025). The risk is not theoretical. It is live, ongoing and growing.

There is lateral exposure too. When your users connect to a shared or unknown network, you do not know what else is on it. A compromised device elsewhere on that same Wi-Fi could scan or try to reach your user’s machine, and a compromised router could redirect traffic. Without control of the local network, your security posture rests on assumptions you cannot verify.

The Loxada System

Loxada brings visibility, consistency and control to the network edge. Every device we ship runs Loxada’s secure firmware and routes traffic through Loxada’s secure connectivity layer to public egress, over an always-on encrypted connection. Setup takes minutes, ongoing management is automated, no local configuration is needed, and every device behaves predictably wherever it is plugged in.

Loxada complements your existing security stack. It does not replace your VPN clients, MDM, EDR or IAM tools, it supports them by creating a secure, known network edge physically close to the user. That reduces your attack surface and improves the reliability of the defences you already have.

Loxada's secure firmware

We replace the manufacturer firmware on every device we supply with Loxada’s secure firmware, so no vendor firmware code remains and you are not dependent on the manufacturer’s code. If a device is tampered with or factory reset, it returns to a known secure state.

Automated deployment

Devices are shipped fully configured, tested and ready to go. End users connect them to a local internet connection, wired or wireless, enter their email address, and if it is on the system everything works from the moment they connect. No software to install, no repeating login screens, no complicated troubleshooting guides.

Automated Updates

All firmware updates and security patches are managed centrally by Loxada and securely delivered. This keeps protection current without relying on users to apply updates themselves, a key recommendation in security agency guidance for edge-device hardening.

Simple Administration

Each router checks in automatically with the Loxada administration portal. Your IT or security team can control user access, monitor device status, and change SSIDs and passwords, without needing remote access to the router itself. The system is low-touch but fully auditable, with monthly security reports sent directly to your inbox.

Loxada's Technical Architecture

Each device connects to the Loxada network through an encrypted connection. Traffic is encrypted from the moment it leaves the device, and no other devices on the local network can interact with it.

High-level architecture

  • Client device connects to a Loxada router by Ethernet or Wi-Fi.
  • The router runs hardened Loxada firmware, with no vendor firmware code remaining.
  • An outbound encrypted connection is initiated from the router to the Loxada RPN.

 

Security and protocols

  • Always-on encrypted connection built on the WireGuard protocol.
  • Loxada-operated DNS, with blocking of over 900,000 known malicious domains.
  • Encrypted management channel for status reporting.
  • Firmware updates managed centrally by Loxada and securely delivered.

 

Compliance and assurance

  • Supports data-protection strategies for regulated industries.
  • Aligned with network edge security guidance from GCHQ, the NSA and CISA.
  • Latest third-party security test results available on request.

 

Want more detail? Contact us for a technical conversation.

Can I Do This Myself?

Yes. You can buy routers, flash them with custom firmware, maintain your own VPN infrastructure and try to keep everything patched. We have even written a blog post with a full checklist if you want to try.

How to set up secure routers for people connecting remotely

But the biggest issue is not setup, it is maintenance. Even a well-configured router running vendor firmware is unlikely to stay secure for long. Many patches contain known vulnerabilities, and tracking every device, update and network condition across a dispersed team is resource-intensive.

Loxada solves all of that with minimal overhead, and the confidence that your network edge is not being left to chance.

Loxada made moving our entire team to being securely fully remote simple and doesn’t require our time to keep it that way.

Professional membership association

Security Risks Addressed
Home working
Shared offices
Travelling
Off sites
Public Wi-Fi
Compliance
BYOD