Our open-source application allows users to obtain events, metrics, and unencrypted payload data from applications running on Linux. The AppScope dev team are looking for feedback from the community to help create the roadmap for future releases.
We hook calls to libc that are of interest (like open, write, execve), so when those functions are called we can exfiltrate the data to a queue, then return control to the caller with an unnoticeable delay. Right now, there is a capability to send data over the network, and we are working on the capability to perform remote management and configuration.