Back to Feed
AI SecurityOct 3, 2026

doxx.net Raises $38 Million to Prevent AI Agent-on-the-Internet Misadventures

doxx.net raises $38M for its Agentic Defined Networking (ADN) platform to protect AI agents.

Summary

Miami-based doxx.net has secured $38 million in Series A funding to develop its Agentic Defined Networking (ADN) platform. The platform aims to prevent AI agents from accessing malicious destinations on the internet while acting on behalf of users. ADN provides a private, serverless P2P networking environment with built-in threat protection and its own custom TLDs and certificate authority.

Full text

Miami, FL-based doxx.net has raised $38 million in a Series A funding round led by Andreessen Horowitz, with participation from Animo Ventures and Focal.vc. The firm was founded in 2025 by serial founder and hacker-at-heart Barrett Lyon, and it operates across six continents. The new funding was announced at the same time as the doxx.net Agentic Defined Networking (ADN) platform, currently in open beta, was announced. This platform gives agents an environment with defined connectivity and built-in threat protection, helping prevent them from reaching known malicious destinations while they browse and act on a user’s behalf. Today, agents browse the internet, communicate, access services and act on behalf of their user. But these agents cannot necessarily distinguish between safe information and actions, and unsafe information and actions while operating with their users’ accounts and authority. This is the security issue addressed by ADN. “The industry sells privacy as a feature while routing your traffic through rented infrastructure they don’t own and can’t verify,” explains Barrett Lyon, founder and CEO at doxx.net. “We physically built something different: a platform where privacy comes from the architecture itself, not a policy document. We do that so people and agents using the network, not third parties, set the terms of their privacy. They know what you search, where you go, and who you talk to. We don’t. And we built the network so we never can.” ADN is a parallel, private networking platform that allows both human users and AI agents to connect, communicate, and browse without relying on any central intermediary servers. Such servers create problems. They provide a single point for interception and surveillance; artificial privacy guarantees that are usually more policy than fact, they increase the potential for the agent to land on a malicious destination, and they are susceptible to censorship and blocking. ADN, however, provides serverless P2P communication with end-to-end messaging and file transfers; in-built threat protection that blocks malicious destinations, malware, and phishing sites; agent integration and API control, a parallel internet infrastructure, and privacy and anti-tracking features. It has native apps for iOS, macOS, and Android, with support for Windows and Linux, all running on its global backbone.Advertisement. Scroll to continue reading. “The internet was never designed for privacy,” adds Joel De La Garza, partner at Andreessen Horowitz and board member at doxx.net. “doxx.net has built a one-stop privacy stack from first principles, delivering truly private security and communications capabilities, so humans and AI agents can run on a network that is private by architecture, not by marketing promise.” The firm allows customers to run on this private network with its own naming system. A parallel internet ecosystem provides 196 custom TLDs and its own certificate authority. Customers’ ADN networks resolve domains the public internet has never heard of, with no third parties involved. It gives users and agents DNS-level threat protection that blocks known and emerging malicious destinations before an agent or person connects. Since December 2025, doxx.net claims to have blocked more than 38 million threats in closed beta. The platform allows customers to run end to end on infrastructure owned by doxx.net with its own IP space and ASN, its own DNS root, its own certificate authority, its own local AI models and its own bare-metal servers. It requires no usernames, passwords or other personal information from its users – accounts are created by proof-of-work. Related: Reco Raises $55 Million for Agentic Security Related: Rig Security Emerges From Stealth With $12M to Tackle Agentic AI Identity Risks Related: Begin at the End: How to Enable Agentic Remediation Related: HelmGuard Raises $7.3 Million for Agentic GRC and Security Written By Kevin Townsend Kevin Townsend is a Senior Contributor at SecurityWeek. He has been writing about high tech issues since before the birth of Microsoft. For the last 15 years he has specialized in information security; and has had many thousands of articles published in dozens of different magazines – from The Times and the Financial Times to current and long-gone computer magazines. Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights. More from Kevin Townsend Zero Trust Creator Says Model Holds Firm Against AI-Assisted AttacksEnterprises Struggle to Prepare for AI and Quantum Threats, PwC SaysHacker Conversations: Rob Juncker, a Knock at the Door and a Moral CompassDARPA Selects Xint to Use AI in Securing Military Messaging AppsRig Security Emerges From Stealth With $12M to Tackle Agentic AI Identity RisksModulate Raises $25 Million to Advance Deepfake DetectionIonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderOuterlimit Raises $16 Million to Stop Rogue AI Agents From Causing Harm Latest News Fortra Patches Critical Vulnerabilities in BoKSIn Other News: $15K iCloud Spoofing Bugs, AI Policy Experts Phished, Adblocker Spies on AI ChatsmacOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD BackdoorCrypto Scammers Hijack Microsoft’s Official X AccountIn Rare Move, Alleged Iranian State Hacker Extradited to USWarlock Expands SharePoint Exploitation in Critical Infrastructure AttacksAI Agents Aimed SQL Injection at US and Canadian Government SitesExploited Fortinet FortiMail Zero-Day Calls for Urgent Action Trending Daily Briefing NewsletterSubscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts. Webinar: Securing AI Agents, MCPs, and AI Automations October 7, 2026 Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice. Register Virtual Event: Zero Trust & Identity Strategies Summit 2026 October 14, 2026 Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction. Register People on the MoveLumen Technologies has named Kim Keever as CSO.Quantum Secure Encryption Corp. has appointed Joseph Hall as CIO.David Cass has joined Grayscale Investments as Chief Risk Officer.More People On The MoveExpert Insights AI Has Changed Attack Speed, Not Security Fundamentals As AI accelerates vulnerability discovery and exploitation, so-called virtual patching still comes down to defense-in-depth and strong application security fundamentals. (Joshua Goldfarb) Four Cyber Threats Harboring Big Plans for the Future - AI, supply-chain exposure, quantum computing and geopolitical conflict are testing security programs. Preparing for disruption must become part of day-to-day operations. (Steve Durbin) Begin at the End: How to Enable Agentic Remediation Agentic remediation is not an act of faith. We are talking about fixing known problems, not judgment calls about unfamiliar risk. (Nadir Izrael) “We Think the Security Control Is Working” Is No Longer Good Enough Point-in-time audits and sampled assessments offer only snapshots; continuous control monitoring provides evidence that security controls are working today. (Sravish Sridhar) This Key Will Self-Destruct: An Open Standard for Revocable API Keys Every leaked credential should be dead, or dying, within sixty seconds of being found. Here's a proposal to make that the default. (Matt Honea) Flipboard Reddit Whatsapp Whatsapp Email

Indicators of Compromise

  • malware — malware
  • malware — phishing sites

Entities

Agentic Defined Networking (ADN) platform (product)doxx.net (vendor)Barrett Lyon (threat_actor)iOS (product)macOS (product)Android (product)