Technical Overview

Capabilities

Deep insight into Android device state, configurations, and artifacts. Designed for speed and operational security.

C:\CALIBRE> calibre-cli --scan --module root
[*] Initializing Root Detection Module...
[-] Checking common SSH paths... OK
[-] Checking Magisk modules... OK
[-] Verifying /bin/bash existence...
[!] Found anomalous file: /bin/bash (size: 1.2MB)
[!] Found unauthorized su binary in /system/xbin
[!] Device status: POTENTIALLY COMPROMISED

Root & Tamper Detection

Identify sophisticated, systemless, and hidden root frameworks that bypass standard MDM checks. We scan for specific filesystem artifacts, unauthorized binaries, and modified permissions.

  • Known root frameworks (Magisk, KernelSU, etc.)
  • Anomalous su binaries
  • Filesystem permission modifications
  • Development profile misuse

Device Discovery & Acquisition

Quickly acquire hardware identifiers, network state, and basic configuration without triggering a full backup. Perfect for border triage or initial incident response.

  • IMEI, Serial, UDID, and Baseband details
  • Current network and battery state
  • Installed application list (including hidden/system)
  • Configuration profile extraction
Device Info Summary
ModelPixel 8 Pro
OSVersionAndroid 14 (UP1A.231105)
SerialNumberG0V4*****F0N
ActivationStateActivated
TimeInterval1689240112

Analyst-Reviewed Results

CALIBRE never leaves the verdict to an automated engine running on a threat library that may be days or weeks old. Every scan report is securely submitted to our lab, where a technical forensic analyst manually verifies the findings against threat intelligence updated hourly.

  • Encrypted report submitted directly to our lab
  • Manual review by a technical forensic analyst
  • Checked against threat intelligence updated hourly
  • Verified verdict, current to the hour
Lab Review Queue
[*] Report received: encrypted, integrity verified
[-] Threat intelligence snapshot: refreshed 00:41 ago
[-] Cross-checking 214 indicators...
[*] Assigned to analyst for manual review
[OK] Verdict verified and released to customer

Complete Feature Matrix

Device Discovery

Instant retrieval of device identifiers, OS details, and pairing records.

Artifact Analysis

Extraction and parsing of high-value databases, preferences, and logs via ADB.

Root Detection

Filesystem and behavioral heuristics to detect compromise.

Data Extraction

Targeted extraction of specific app sandboxes (requires appropriate permissions).

Baseline Comparison

Diff current device state against pre-defined organizational baselines.

Evidence Documentation

Automated, cryptographically hashed HTML/JSON report generation.