Technical Overview

Capabilities

Deep insight into iOS device state, configurations, and artifacts. Designed for speed and operational security.

C:\CALIBRE> calibre-cli --scan --module jailbreak
[*] Initializing Jailbreak Detection Module...
[-] Checking common SSH paths... OK
[-] Checking Cydia Substrate... OK
[-] Verifying /bin/bash existence...
[!] Found anomalous file: /bin/bash (size: 1.2MB)
[!] Found unauthorized symbolic link in /Library/Ringtones
[!] Device status: POTENTIALLY COMPROMISED

Jailbreak & Tamper Detection

Identify sophisticated, semi-tethered, and rootless jailbreaks that bypass standard MDM checks. We scan for specific filesystem artifacts, unauthorized binaries, and modified permissions.

  • Known jailbreak app IDs (checkra1n, unc0ver, etc.)
  • Anomalous SSH installations
  • Filesystem permission modifications
  • Development profile misuse

Device Discovery & Acquisition

Quickly acquire hardware identifiers, network state, and basic configuration without triggering a full backup. Perfect for border triage or initial incident response.

  • IMEI, Serial, UDID, and Baseband details
  • Current network and battery state
  • Installed application list (including hidden/system)
  • Configuration profile extraction
Device Info Summary
ProductTypeiPhone14,2
OSVersion16.4.1
SerialNumberG0V4*****F0N
ActivationStateActivated
TimeInterval1689240112

Complete Feature Matrix

Device Discovery

Instant retrieval of device identifiers, OS details, and pairing records.

Artifact Analysis

Extraction and parsing of high-value plists, databases, and logs via AFC.

Jailbreak Detection

Filesystem and behavioral heuristics to detect compromise.

Data Extraction

Targeted extraction of specific app sandboxes (requires appropriate permissions).

Baseline Comparison

Diff current device state against pre-defined organizational baselines.

Evidence Documentation

Automated, cryptographically hashed HTML/JSON report generation.