×
Before ‘Witch Hat,’ Kamome Shirahama Blessed Us With a Hilarious Romp About Gals Being Pals
                Witch Hat Atelier has quickly become one of, if not the, must-watch anime of the season. So much so, you can’t fault fans for hitting a common anime adaptation impasse: watching weekly, banking episodes for a finale-day binge, or giving in and reading ahead in Kamome Shirahama‘s beloved manga. Decisions, decisions. But what if we told you there’s a secret third option—one that scratches the Shirahama itch to bask in her bespoke artistry and trades the unspeakable horrors awaiting Coco for a side-splitting, utterly riotous comedy? Well, good, because we are. That option is her slept-on, pre-Witch Hat Atelier manga, Eniale & Dewiela.

 © Kamome Shirahama/Yen Press If Witch Hat Atelier is Shirahama in her grand adventure, Dragon Ball Z era, Eniale & Dewiela was her at peak Dr. Slump whimsy. Set in a world where heaven and hell coexist, the manga follows the unruly yet wildly endearing friendship between Eniale, the angel, and Dewiela, the demon—two gals tasked with collecting souls on Earth, a job they’d much rather procrastinate on by going shopping. Unfortunately for them, celestial bureaucracies run a tight ship, so shirking their duties only piles more work onto them.

 So they have their fun wherever they can get it by diving into a generational rivalry of soul-dollect, ducking exorcists, and doing the absolute most in the process to one-up each other. Naturally, their daily angel-devil routine spirals into chaos, ranging from the benign to the apocalyptic, making for a hilarious, short-but-sweet read.  			 				 			 				 				© Kamome Shirahama/Yen Press 				 			 				 			 				 				© Kamome Shirahama/Yen Press 				 		  For comparison, Eniale and Dewiela’s dynamic gives Bayonetta and Jeanne a touch of Panty & Stocking with Garterbelt, but with the debauchery dialed down from a raucous 11 to a mischievous five. In Witch Hat Atelier terms, Eni and Dewi read like the proto-blueprint for Agott’s tsundere bite and Coco’s sheepish naïveté reimagined as a madcap buddy comedy duo. Watching Shirahama remove her limiters and let these two wreak havoc—whether sabotaging each other’s soul quotas or teaming up to do the bare minimum—is a delight. And when they’re not butting heads, they’re simply gals being pals: shopping, scheming, and trying to live their best lives.

 What I love most about the manga is that it’s Shirahama fully in her comedic bag, writing slapstick gags with an elasticity and confidence that feel distinctly aged-up, in line with Witch Hat Atelier‘s gentler whimsy. With each chapter, you can feel her stretching, riffing, and letting herself be unserious in ways that WHA‘s tone doesn’t always allow. Coincidentally, the manga also teases her natural aptitude for sapphic-tinged storytelling that WHA fans—especially Arkco-truthers (we see you)—will clock immediately. Shirahama’s genuinely funny here, but she’s also effortlessly flexing her ability to weave emotionally stirring beats into her gag comedy manga.  			 				 			 				 				© Kamome Shirahama/Yen Press 				 			 				 			 				 				© Kamome Shirahama/Yen Press 				 		  For readers who adore WHA’s visual splendor, rest assured: Eniale & Dewiela carries the same hallmarks. The panel work is exquisite, the ornate borders feel like thumbing through an ancient tome, and the intricate detailing is as gobsmacking as ever. But here, that craft is in service of pure comedy. Across its three volumes, Shirahama unleashes a cavalcade of supernatural disasters born from the duo’s joint dumbassery—raising hordes of zombies while trying to turn a priest into both an angel and a demon, splitting the sea like Moses to find a missing earring, and firing a sky‑beam of souls straight into the heavens.

 And when the manga isn’t serving killer runway fashion, heavenly‑hellish hijinks, or a few sapphic glances, it’s got heart. The standout moment comes in chapter eight, where Dewiela goes from hovering over an old woman like a vulture waiting to collect her soul to befriending her and her “fugly” guard cat. That chapter made me misty-eyed, I’m not gonna lie. © Kamome Shirahama/Yen Press So if you need a quick, delightful read while you deliberate over whether you’re going to stockpile Witch Hat Atelier episodes or are simply craving more of Shirahama’s work (outside her Pokémon card illustrations—she contains multitudes), Eniale & Dewiela is absolutely worth your time.  Want more io9 news? Check out when to expect the latest Marvel, Star Wars, and Star Trek releases, what’s next for the DC Universe on film and TV, and everything you need to know about the future of Doctor Who.      #Witch #Hat #Kamome #Shirahama #Blessed #Hilarious #Romp #Gals #PalsKamome Shirahama,Manga,Witch Hat Atelier

Before ‘Witch Hat,’ Kamome Shirahama Blessed Us With a Hilarious Romp About Gals Being Pals

Witch Hat Atelier has quickly become one of, if not the, must-watch anime of the season. So much so, you can’t fault fans for hitting a common anime adaptation impasse: watching weekly, banking episodes for a finale-day binge, or giving in and reading ahead in Kamome Shirahama‘s beloved manga. Decisions, decisions.

But what if we told you there’s a secret third option—one that scratches the Shirahama itch to bask in her bespoke artistry and trades the unspeakable horrors awaiting Coco for a side-splitting, utterly riotous comedy? Well, good, because we are. That option is her slept-on, pre-Witch Hat Atelier manga, Eniale & Dewiela.

Before ‘Witch Hat,’ Kamome Shirahama Blessed Us With a Hilarious Romp About Gals Being Pals
                Witch Hat Atelier has quickly become one of, if not the, must-watch anime of the season. So much so, you can’t fault fans for hitting a common anime adaptation impasse: watching weekly, banking episodes for a finale-day binge, or giving in and reading ahead in Kamome Shirahama‘s beloved manga. Decisions, decisions. But what if we told you there’s a secret third option—one that scratches the Shirahama itch to bask in her bespoke artistry and trades the unspeakable horrors awaiting Coco for a side-splitting, utterly riotous comedy? Well, good, because we are. That option is her slept-on, pre-Witch Hat Atelier manga, Eniale & Dewiela.

 © Kamome Shirahama/Yen Press If Witch Hat Atelier is Shirahama in her grand adventure, Dragon Ball Z era, Eniale & Dewiela was her at peak Dr. Slump whimsy. Set in a world where heaven and hell coexist, the manga follows the unruly yet wildly endearing friendship between Eniale, the angel, and Dewiela, the demon—two gals tasked with collecting souls on Earth, a job they’d much rather procrastinate on by going shopping. Unfortunately for them, celestial bureaucracies run a tight ship, so shirking their duties only piles more work onto them.

 So they have their fun wherever they can get it by diving into a generational rivalry of soul-dollect, ducking exorcists, and doing the absolute most in the process to one-up each other. Naturally, their daily angel-devil routine spirals into chaos, ranging from the benign to the apocalyptic, making for a hilarious, short-but-sweet read.  			 				 			 				 				© Kamome Shirahama/Yen Press 				 			 				 			 				 				© Kamome Shirahama/Yen Press 				 		  For comparison, Eniale and Dewiela’s dynamic gives Bayonetta and Jeanne a touch of Panty & Stocking with Garterbelt, but with the debauchery dialed down from a raucous 11 to a mischievous five. In Witch Hat Atelier terms, Eni and Dewi read like the proto-blueprint for Agott’s tsundere bite and Coco’s sheepish naïveté reimagined as a madcap buddy comedy duo. Watching Shirahama remove her limiters and let these two wreak havoc—whether sabotaging each other’s soul quotas or teaming up to do the bare minimum—is a delight. And when they’re not butting heads, they’re simply gals being pals: shopping, scheming, and trying to live their best lives.

 What I love most about the manga is that it’s Shirahama fully in her comedic bag, writing slapstick gags with an elasticity and confidence that feel distinctly aged-up, in line with Witch Hat Atelier‘s gentler whimsy. With each chapter, you can feel her stretching, riffing, and letting herself be unserious in ways that WHA‘s tone doesn’t always allow. Coincidentally, the manga also teases her natural aptitude for sapphic-tinged storytelling that WHA fans—especially Arkco-truthers (we see you)—will clock immediately. Shirahama’s genuinely funny here, but she’s also effortlessly flexing her ability to weave emotionally stirring beats into her gag comedy manga.  			 				 			 				 				© Kamome Shirahama/Yen Press 				 			 				 			 				 				© Kamome Shirahama/Yen Press 				 		  For readers who adore WHA’s visual splendor, rest assured: Eniale & Dewiela carries the same hallmarks. The panel work is exquisite, the ornate borders feel like thumbing through an ancient tome, and the intricate detailing is as gobsmacking as ever. But here, that craft is in service of pure comedy. Across its three volumes, Shirahama unleashes a cavalcade of supernatural disasters born from the duo’s joint dumbassery—raising hordes of zombies while trying to turn a priest into both an angel and a demon, splitting the sea like Moses to find a missing earring, and firing a sky‑beam of souls straight into the heavens.

 And when the manga isn’t serving killer runway fashion, heavenly‑hellish hijinks, or a few sapphic glances, it’s got heart. The standout moment comes in chapter eight, where Dewiela goes from hovering over an old woman like a vulture waiting to collect her soul to befriending her and her “fugly” guard cat. That chapter made me misty-eyed, I’m not gonna lie. © Kamome Shirahama/Yen Press So if you need a quick, delightful read while you deliberate over whether you’re going to stockpile Witch Hat Atelier episodes or are simply craving more of Shirahama’s work (outside her Pokémon card illustrations—she contains multitudes), Eniale & Dewiela is absolutely worth your time.  Want more io9 news? Check out when to expect the latest Marvel, Star Wars, and Star Trek releases, what’s next for the DC Universe on film and TV, and everything you need to know about the future of Doctor Who.      #Witch #Hat #Kamome #Shirahama #Blessed #Hilarious #Romp #Gals #PalsKamome Shirahama,Manga,Witch Hat Atelier
© Kamome Shirahama/Yen Press

If Witch Hat Atelier is Shirahama in her grand adventure, Dragon Ball Z era, Eniale & Dewiela was her at peak Dr. Slump whimsy.

Set in a world where heaven and hell coexist, the manga follows the unruly yet wildly endearing friendship between Eniale, the angel, and Dewiela, the demon—two gals tasked with collecting souls on Earth, a job they’d much rather procrastinate on by going shopping. Unfortunately for them, celestial bureaucracies run a tight ship, so shirking their duties only piles more work onto them.

So they have their fun wherever they can get it by diving into a generational rivalry of soul-dollect, ducking exorcists, and doing the absolute most in the process to one-up each other. Naturally, their daily angel-devil routine spirals into chaos, ranging from the benign to the apocalyptic, making for a hilarious, short-but-sweet read.

For comparison, Eniale and Dewiela’s dynamic gives Bayonetta and Jeanne a touch of Panty & Stocking with Garterbelt, but with the debauchery dialed down from a raucous 11 to a mischievous five. In Witch Hat Atelier terms, Eni and Dewi read like the proto-blueprint for Agott’s tsundere bite and Coco’s sheepish naïveté reimagined as a madcap buddy comedy duo. Watching Shirahama remove her limiters and let these two wreak havoc—whether sabotaging each other’s soul quotas or teaming up to do the bare minimum—is a delight. And when they’re not butting heads, they’re simply gals being pals: shopping, scheming, and trying to live their best lives.

What I love most about the manga is that it’s Shirahama fully in her comedic bag, writing slapstick gags with an elasticity and confidence that feel distinctly aged-up, in line with Witch Hat Atelier‘s gentler whimsy. With each chapter, you can feel her stretching, riffing, and letting herself be unserious in ways that WHA‘s tone doesn’t always allow. Coincidentally, the manga also teases her natural aptitude for sapphic-tinged storytelling that WHA fans—especially Arkco-truthers (we see you)—will clock immediately. Shirahama’s genuinely funny here, but she’s also effortlessly flexing her ability to weave emotionally stirring beats into her gag comedy manga.

For readers who adore WHA’s visual splendor, rest assured: Eniale & Dewiela carries the same hallmarks. The panel work is exquisite, the ornate borders feel like thumbing through an ancient tome, and the intricate detailing is as gobsmacking as ever. But here, that craft is in service of pure comedy. Across its three volumes, Shirahama unleashes a cavalcade of supernatural disasters born from the duo’s joint dumbassery—raising hordes of zombies while trying to turn a priest into both an angel and a demon, splitting the sea like Moses to find a missing earring, and firing a sky‑beam of souls straight into the heavens.

And when the manga isn’t serving killer runway fashion, heavenly‑hellish hijinks, or a few sapphic glances, it’s got heart. The standout moment comes in chapter eight, where Dewiela goes from hovering over an old woman like a vulture waiting to collect her soul to befriending her and her “fugly” guard cat. That chapter made me misty-eyed, I’m not gonna lie.

Eniale & Dewiela Manga panel of women watching a sunset.
© Kamome Shirahama/Yen Press

So if you need a quick, delightful read while you deliberate over whether you’re going to stockpile Witch Hat Atelier episodes or are simply craving more of Shirahama’s work (outside her Pokémon card illustrations—she contains multitudes), Eniale & Dewiela is absolutely worth your time.

Want more io9 news? Check out when to expect the latest Marvel, Star Wars, and Star Trek releases, what’s next for the DC Universe on film and TV, and everything you need to know about the future of Doctor Who.

#Witch #Hat #Kamome #Shirahama #Blessed #Hilarious #Romp #Gals #PalsKamome Shirahama,Manga,Witch Hat Atelier

Witch Hat Atelier has quickly become one of, if not the, must-watch anime of the season. So much so, you can’t fault fans for hitting a common anime adaptation impasse: watching weekly, banking episodes for a finale-day binge, or giving in and reading ahead in Kamome Shirahama‘s beloved manga. Decisions, decisions.

But what if we told you there’s a secret third option—one that scratches the Shirahama itch to bask in her bespoke artistry and trades the unspeakable horrors awaiting Coco for a side-splitting, utterly riotous comedy? Well, good, because we are. That option is her slept-on, pre-Witch Hat Atelier manga, Eniale & Dewiela.

© Kamome Shirahama/Yen Press

If Witch Hat Atelier is Shirahama in her grand adventure, Dragon Ball Z era, Eniale & Dewiela was her at peak Dr. Slump whimsy.

Set in a world where heaven and hell coexist, the manga follows the unruly yet wildly endearing friendship between Eniale, the angel, and Dewiela, the demon—two gals tasked with collecting souls on Earth, a job they’d much rather procrastinate on by going shopping. Unfortunately for them, celestial bureaucracies run a tight ship, so shirking their duties only piles more work onto them.

So they have their fun wherever they can get it by diving into a generational rivalry of soul-dollect, ducking exorcists, and doing the absolute most in the process to one-up each other. Naturally, their daily angel-devil routine spirals into chaos, ranging from the benign to the apocalyptic, making for a hilarious, short-but-sweet read.

For comparison, Eniale and Dewiela’s dynamic gives Bayonetta and Jeanne a touch of Panty & Stocking with Garterbelt, but with the debauchery dialed down from a raucous 11 to a mischievous five. In Witch Hat Atelier terms, Eni and Dewi read like the proto-blueprint for Agott’s tsundere bite and Coco’s sheepish naïveté reimagined as a madcap buddy comedy duo. Watching Shirahama remove her limiters and let these two wreak havoc—whether sabotaging each other’s soul quotas or teaming up to do the bare minimum—is a delight. And when they’re not butting heads, they’re simply gals being pals: shopping, scheming, and trying to live their best lives.

What I love most about the manga is that it’s Shirahama fully in her comedic bag, writing slapstick gags with an elasticity and confidence that feel distinctly aged-up, in line with Witch Hat Atelier‘s gentler whimsy. With each chapter, you can feel her stretching, riffing, and letting herself be unserious in ways that WHA‘s tone doesn’t always allow. Coincidentally, the manga also teases her natural aptitude for sapphic-tinged storytelling that WHA fans—especially Arkco-truthers (we see you)—will clock immediately. Shirahama’s genuinely funny here, but she’s also effortlessly flexing her ability to weave emotionally stirring beats into her gag comedy manga.

For readers who adore WHA’s visual splendor, rest assured: Eniale & Dewiela carries the same hallmarks. The panel work is exquisite, the ornate borders feel like thumbing through an ancient tome, and the intricate detailing is as gobsmacking as ever. But here, that craft is in service of pure comedy. Across its three volumes, Shirahama unleashes a cavalcade of supernatural disasters born from the duo’s joint dumbassery—raising hordes of zombies while trying to turn a priest into both an angel and a demon, splitting the sea like Moses to find a missing earring, and firing a sky‑beam of souls straight into the heavens.

And when the manga isn’t serving killer runway fashion, heavenly‑hellish hijinks, or a few sapphic glances, it’s got heart. The standout moment comes in chapter eight, where Dewiela goes from hovering over an old woman like a vulture waiting to collect her soul to befriending her and her “fugly” guard cat. That chapter made me misty-eyed, I’m not gonna lie.

Eniale & Dewiela Manga panel of women watching a sunset.
© Kamome Shirahama/Yen Press

So if you need a quick, delightful read while you deliberate over whether you’re going to stockpile Witch Hat Atelier episodes or are simply craving more of Shirahama’s work (outside her Pokémon card illustrations—she contains multitudes), Eniale & Dewiela is absolutely worth your time.

Want more io9 news? Check out when to expect the latest Marvel, Star Wars, and Star Trek releases, what’s next for the DC Universe on film and TV, and everything you need to know about the future of Doctor Who.

Source link
#Witch #Hat #Kamome #Shirahama #Blessed #Hilarious #Romp #Gals #Pals

Previous post

MI at Chepauk, IPL 2026: Mumbai Indians record at MAC Stadium ahead of Chennai Super Kings clash <div id="content-body-70931041" itemprop="articleBody"><p>Mumbai Indians will look to avenge its damning defeat in the reverse fixture at the Wankhede Stadium when it takes on rival Chennai Super Kings at the M. A. Chidambaram Stadium in Chennai on Saturday.</p><p>The Hardik Pandya-led side has struggled this season, with only two wins in eight games. The side is currently placed ninth in the standings.</p><p>CSK has fared marginally better, with three wins in eight and sits seventh on the table, six points away from a top four spot.</p><p><b>Here’s how Mumbai Indians have fared at the Chepauk stadium:</b></p><div class="fact-box"><p> Matches played: 16 </p><p> MI wins: 8 </p><p> MI losses: 8 </p><p> Highest score: 202/7 (2008) </p><p> Lowest score: 131/6 (2021) </p></div><p><b>RELATED | <a href="https://sportstar.thehindu.com/cricket/ipl/jasprit-bumrah-record-against-chennai-super-kings-csk-vs-mi-ipl-2026-wickets-stats-economy-average/article70930912.ece" target="_blank" rel="nofollow">Jasprit Bumrah’s record against Chennai Super Kings</a></b></p><div class="fact-box"><h5 class="main-title"> MI batting and bowling stats at Chepauk: </h5><p> Most runs: Rohit Sharma – 322 in 14 matches (Ave: 23, SR: 118.81) </p><p> Highest score: Suryakumar Yadav 71* in 2019 </p><p> Most wickets: Rahul Chahar – 11 wickets in seven innings (ER 6.14) </p><p> Best figures: Akash Madhwal 5/5 in 3.3 overs vs LSG in 2023 </p></div><p class="publish-time" id="end-of-article">Published on May 02, 2026</p></div> #Chepauk #IPL #Mumbai #Indians #record #MAC #Stadium #ahead #Chennai #Super #Kings #clash

Next post

This Under-$20 Lifestraw Filter Is So Effective, I Drank Literal Gutter Water Through It

The fact that this hack happened is a problem. So is the fact that it took a while for anyone to notice. And the fact that it seems no one is willing or able to do much to stop it. (And lest you think it’s just an OpenAI problem, since we recorded this episode Anthropic acknowledged its models have also hacked a bunch of other companies without either party knowing.) It might all just be a bunch of posturing and hype, but it’s also increasingly clear that the companies building large language models either can’t or won’t put the right guardrails on them. So who will?

After all that, it’s time for Brendan Carr is a Dummy, a bunch of vertical video news, and the smashing success of the Ferrari Luce. People are buying it! If one of them is you, we’d love to hear about it.

#time #panic #safetyAI,OpenAI,Podcasts,Policy,Vergecast">It’s time to panic about AI safetyWhen the phrase “OpenAI hacked Hugging Face” has more or less entered mainstream culture, you know we have an AI problem. This week, we learned more about exactly how OpenAI’s agent broke out of a sandbox and autonomously traversed the web, including a bunch of other supposedly secure web services, all in the name of cheating on a benchmark tests.The fact that this hack happened is a problem. So is the fact that it took a while for anyone to notice. And the fact that it seems no one is willing or able to do much to stop it. (And lest you think it’s just an OpenAI problem, since we recorded this episode Anthropic acknowledged its models have also hacked a bunch of other companies without either party knowing.) It might all just be a bunch of posturing and hype, but it’s also increasingly clear that the companies building large language models either can’t or won’t put the right guardrails on them. So who will?After all that, it’s time for Brendan Carr is a Dummy, a bunch of vertical video news, and the smashing success of the Ferrari Luce. People are buying it! If one of them is you, we’d love to hear about it.#time #panic #safetyAI,OpenAI,Podcasts,Policy,Vergecast

we have an AI problem. This week, we learned more about exactly how OpenAI’s agent broke out of a sandbox and autonomously traversed the web, including a bunch of other supposedly secure web services, all in the name of cheating on a benchmark tests.

The fact that this hack happened is a problem. So is the fact that it took a while for anyone to notice. And the fact that it seems no one is willing or able to do much to stop it. (And lest you think it’s just an OpenAI problem, since we recorded this episode Anthropic acknowledged its models have also hacked a bunch of other companies without either party knowing.) It might all just be a bunch of posturing and hype, but it’s also increasingly clear that the companies building large language models either can’t or won’t put the right guardrails on them. So who will?

After all that, it’s time for Brendan Carr is a Dummy, a bunch of vertical video news, and the smashing success of the Ferrari Luce. People are buying it! If one of them is you, we’d love to hear about it.

#time #panic #safetyAI,OpenAI,Podcasts,Policy,Vergecast">It’s time to panic about AI safety

When the phrase “OpenAI hacked Hugging Face” has more or less entered mainstream culture, you know we have an AI problem. This week, we learned more about exactly how OpenAI’s agent broke out of a sandbox and autonomously traversed the web, including a bunch of other supposedly secure web services, all in the name of cheating on a benchmark tests.

The fact that this hack happened is a problem. So is the fact that it took a while for anyone to notice. And the fact that it seems no one is willing or able to do much to stop it. (And lest you think it’s just an OpenAI problem, since we recorded this episode Anthropic acknowledged its models have also hacked a bunch of other companies without either party knowing.) It might all just be a bunch of posturing and hype, but it’s also increasingly clear that the companies building large language models either can’t or won’t put the right guardrails on them. So who will?

After all that, it’s time for Brendan Carr is a Dummy, a bunch of vertical video news, and the smashing success of the Ferrari Luce. People are buying it! If one of them is you, we’d love to hear about it.

#time #panic #safetyAI,OpenAI,Podcasts,Policy,Vergecast
Anthropic said Thursday that an internal investigation uncovered three incidents in which its AI model Claude breached the systems of three organizations while conducting cybersecurity tests. The investigation, and disclosure, comes more than a week after OpenAI disclosed that one of its unreleased models breached Hugging Face’s systems during internal testing.

In all three cases, a Claude model reached the internet from within a testing environment while interacting with a third party and then gained unauthorized access to the live systems of these organizations, Anthropic said in a blog post, describing what it found and what the company plans to change to prevent this from happening again.

Anthropic said the OpenAI episode earlier this month prompted the company to conduct its own cybersecurity evaluation. It specifically looked for evidence that Claude had accessed the internet from within testing environments, which are designed to act as sandboxes and keep models isolated.

Among the 141,006 evaluation runs it reviewed, the AI lab found three incidents in which its model accessed the internet while interacting with Irregular, one of its third-party partners. Anthropic said the access traced back to a misconfiguration in the evaluation environment run with Irregular. It called this a “misunderstanding” between the two companies over whether the test setup had internet access, when in fact it did.

Anthropic said it isn’t placing blame and is “approaching the fixes as if the responsibility were ours alone,” while observing that Irregular is conducting its own separate investigation.

Because of that open connection, the model gained unauthorized access to the production infrastructure of three different organizations. Anthropic said the incidents involved three different Claude models: Opus 4.7, Mythos 5, and an internal research test model.

Notably, Anthropic said that in each of these cases “Claude was explicitly told by our prompt that it had no internet access.” It appears that the AI model assumed real-world systems to be part of the exercise it was asked to perform.

That assumption didn’t hold up uniformly, as it turns out. The three models didn’t behave the same way once evidence emerged that their targets were real, which Anthropic flagged as one of the more eye-opening findings Thursday.

Opus 4.7, the oldest of the three, recognized that it had reached a real production system in all four runs of that incident. In two of them, it rationalized that the real company must somehow be part of the exercise, but in all four, it kept attacking anyway, including pulling credentials and touching a database of production data. Mythos 5 also picked up on signs that it was on the real internet, but it talked itself back into believing it was still in a simulation, going on to publish a malicious software package to the public Python software registry PyPI, which was then downloaded and run by outside systems before being caught. Only the internal research test model, Anthropic’s newest, stopped on its own once it concluded the target was real.

In response, Anthropic said significant controls must be placed on these kinds of evaluations if powerful AI models are involved, echoing some sentiments within the cybersecurity community.

The company also noted that Claude was running without the additional safety monitoring and classifiers it deploys on generally available models — safeguards it said would have blocked the behavior, because the evaluations are designed to measure the underlying model’s raw capabilities.

Importantly, Anthropic said it found no evidence of any model “pursuing a goal of its own” and instead merely tried to complete the task it was asked to do.

Though comparisons between the mishaps of these fiercely competitive companies are inevitable, Anthropic in its blog post drew a clear distinction between its cybersecurity tests and those of OpenAI, noting where OpenAI’s model exploited an unknown software vulnerability to break out of its test environment, Anthropic’s models instead reached the internet through a path that had, by mistake, been left open.

Anthropic also drew a distinction between itself and OpenAI by noting that it discovered the incidents itself, through a proactive review, and that the two affected organizations it was able to reach hadn’t previously detected the activity or flagged it to Anthropic. (In contrast, Hugging Face detected the recent intrusion of its own systems first; it was only in the following days that OpenAI identified and disclosed that its own AI agent was the perpetrator.)

The company added that it’s now working with the independent evaluation group METR on a third-party review of the incidents.

OpenAI’s accidental breach of Hugging Face, which was the first verifiable case of an AI lab losing control of its model, has sparked a string of wildly differing reactions from the industry and politicians. This latest disclosure from Anthropic ensures the debate over AI models and security will continue.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

#Anthropic #models #breached #companies #security #tests #TechCrunchAnthropic,OpenAI">Anthropic says its own AI models breached three companies during security tests | TechCrunch
Anthropic said Thursday that an internal investigation uncovered three incidents in which its AI model Claude breached the systems of three organizations while conducting cybersecurity tests. The investigation, and disclosure, comes more than a week after OpenAI disclosed that one of its unreleased models breached Hugging Face’s systems during internal testing.

In all three cases, a Claude model reached the internet from within a testing environment while interacting with a third party and then gained unauthorized access to the live systems of these organizations, Anthropic said in a blog post, describing what it found and what the company plans to change to prevent this from happening again.







Anthropic said the OpenAI episode earlier this month prompted the company to conduct its own cybersecurity evaluation. It specifically looked for evidence that Claude had accessed the internet from within testing environments, which are designed to act as sandboxes and keep models isolated.

Among the 141,006 evaluation runs it reviewed, the AI lab found three incidents in which its model accessed the internet while interacting with Irregular, one of its third-party partners. Anthropic said the access traced back to a misconfiguration in the evaluation environment run with Irregular. It called this a “misunderstanding” between the two companies over whether the test setup had internet access, when in fact it did. 

Anthropic said it isn’t placing blame and is “approaching the fixes as if the responsibility were ours alone,” while observing that Irregular is conducting its own separate investigation.

Because of that open connection, the model gained unauthorized access to the production infrastructure of three different organizations. Anthropic said the incidents involved three different Claude models: Opus 4.7, Mythos 5, and an internal research test model.

Notably, Anthropic said that in each of these cases “Claude was explicitly told by our prompt that it had no internet access.” It appears that the AI model assumed real-world systems to be part of the exercise it was asked to perform.


That assumption didn’t hold up uniformly, as it turns out. The three models didn’t behave the same way once evidence emerged that their targets were real, which Anthropic flagged as one of the more eye-opening findings Thursday.

Opus 4.7, the oldest of the three, recognized that it had reached a real production system in all four runs of that incident. In two of them, it rationalized that the real company must somehow be part of the exercise, but in all four, it kept attacking anyway, including pulling credentials and touching a database of production data. Mythos 5 also picked up on signs that it was on the real internet, but it talked itself back into believing it was still in a simulation, going on to publish a malicious software package to the public Python software registry PyPI, which was then downloaded and run by outside systems before being caught. Only the internal research test model, Anthropic’s newest, stopped on its own once it concluded the target was real.

In response, Anthropic said significant controls must be placed on these kinds of evaluations if powerful AI models are involved, echoing some sentiments within the cybersecurity community.







The company also noted that Claude was running without the additional safety monitoring and classifiers it deploys on generally available models — safeguards it said would have blocked the behavior, because the evaluations are designed to measure the underlying model’s raw capabilities.

Importantly, Anthropic said it found no evidence of any model “pursuing a goal of its own” and instead merely tried to complete the task it was asked to do.

Though comparisons between the mishaps of these fiercely competitive companies are inevitable, Anthropic in its blog post drew a clear distinction between its cybersecurity tests and those of OpenAI, noting where OpenAI’s model exploited an unknown software vulnerability to break out of its test environment, Anthropic’s models instead reached the internet through a path that had, by mistake, been left open.

Anthropic also drew a distinction between itself and OpenAI by noting that it discovered the incidents itself, through a proactive review, and that the two affected organizations it was able to reach hadn’t previously detected the activity or flagged it to Anthropic. (In contrast, Hugging Face detected the recent intrusion of its own systems first; it was only in the following days that OpenAI identified and disclosed that its own AI agent was the perpetrator.)

The company added that it’s now working with the independent evaluation group METR on a third-party review of the incidents.

OpenAI’s accidental breach of Hugging Face, which was the first verifiable case of an AI lab losing control of its model, has sparked a string of wildly differing reactions from the industry and politicians. This latest disclosure from Anthropic ensures the debate over AI models and security will continue.


When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.#Anthropic #models #breached #companies #security #tests #TechCrunchAnthropic,OpenAI

Hugging Face’s systems during internal testing.

In all three cases, a Claude model reached the internet from within a testing environment while interacting with a third party and then gained unauthorized access to the live systems of these organizations, Anthropic said in a blog post, describing what it found and what the company plans to change to prevent this from happening again.

Anthropic said the OpenAI episode earlier this month prompted the company to conduct its own cybersecurity evaluation. It specifically looked for evidence that Claude had accessed the internet from within testing environments, which are designed to act as sandboxes and keep models isolated.

Among the 141,006 evaluation runs it reviewed, the AI lab found three incidents in which its model accessed the internet while interacting with Irregular, one of its third-party partners. Anthropic said the access traced back to a misconfiguration in the evaluation environment run with Irregular. It called this a “misunderstanding” between the two companies over whether the test setup had internet access, when in fact it did.

Anthropic said it isn’t placing blame and is “approaching the fixes as if the responsibility were ours alone,” while observing that Irregular is conducting its own separate investigation.

Because of that open connection, the model gained unauthorized access to the production infrastructure of three different organizations. Anthropic said the incidents involved three different Claude models: Opus 4.7, Mythos 5, and an internal research test model.

Notably, Anthropic said that in each of these cases “Claude was explicitly told by our prompt that it had no internet access.” It appears that the AI model assumed real-world systems to be part of the exercise it was asked to perform.

That assumption didn’t hold up uniformly, as it turns out. The three models didn’t behave the same way once evidence emerged that their targets were real, which Anthropic flagged as one of the more eye-opening findings Thursday.

Opus 4.7, the oldest of the three, recognized that it had reached a real production system in all four runs of that incident. In two of them, it rationalized that the real company must somehow be part of the exercise, but in all four, it kept attacking anyway, including pulling credentials and touching a database of production data. Mythos 5 also picked up on signs that it was on the real internet, but it talked itself back into believing it was still in a simulation, going on to publish a malicious software package to the public Python software registry PyPI, which was then downloaded and run by outside systems before being caught. Only the internal research test model, Anthropic’s newest, stopped on its own once it concluded the target was real.

In response, Anthropic said significant controls must be placed on these kinds of evaluations if powerful AI models are involved, echoing some sentiments within the cybersecurity community.

The company also noted that Claude was running without the additional safety monitoring and classifiers it deploys on generally available models — safeguards it said would have blocked the behavior, because the evaluations are designed to measure the underlying model’s raw capabilities.

Importantly, Anthropic said it found no evidence of any model “pursuing a goal of its own” and instead merely tried to complete the task it was asked to do.

Though comparisons between the mishaps of these fiercely competitive companies are inevitable, Anthropic in its blog post drew a clear distinction between its cybersecurity tests and those of OpenAI, noting where OpenAI’s model exploited an unknown software vulnerability to break out of its test environment, Anthropic’s models instead reached the internet through a path that had, by mistake, been left open.

Anthropic also drew a distinction between itself and OpenAI by noting that it discovered the incidents itself, through a proactive review, and that the two affected organizations it was able to reach hadn’t previously detected the activity or flagged it to Anthropic. (In contrast, Hugging Face detected the recent intrusion of its own systems first; it was only in the following days that OpenAI identified and disclosed that its own AI agent was the perpetrator.)

The company added that it’s now working with the independent evaluation group METR on a third-party review of the incidents.

OpenAI’s accidental breach of Hugging Face, which was the first verifiable case of an AI lab losing control of its model, has sparked a string of wildly differing reactions from the industry and politicians. This latest disclosure from Anthropic ensures the debate over AI models and security will continue.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

#Anthropic #models #breached #companies #security #tests #TechCrunchAnthropic,OpenAI">Anthropic says its own AI models breached three companies during security tests | TechCrunch

Anthropic said Thursday that an internal investigation uncovered three incidents in which its AI model Claude breached the systems of three organizations while conducting cybersecurity tests. The investigation, and disclosure, comes more than a week after OpenAI disclosed that one of its unreleased models breached Hugging Face’s systems during internal testing.

In all three cases, a Claude model reached the internet from within a testing environment while interacting with a third party and then gained unauthorized access to the live systems of these organizations, Anthropic said in a blog post, describing what it found and what the company plans to change to prevent this from happening again.

Anthropic said the OpenAI episode earlier this month prompted the company to conduct its own cybersecurity evaluation. It specifically looked for evidence that Claude had accessed the internet from within testing environments, which are designed to act as sandboxes and keep models isolated.

Among the 141,006 evaluation runs it reviewed, the AI lab found three incidents in which its model accessed the internet while interacting with Irregular, one of its third-party partners. Anthropic said the access traced back to a misconfiguration in the evaluation environment run with Irregular. It called this a “misunderstanding” between the two companies over whether the test setup had internet access, when in fact it did.

Anthropic said it isn’t placing blame and is “approaching the fixes as if the responsibility were ours alone,” while observing that Irregular is conducting its own separate investigation.

Because of that open connection, the model gained unauthorized access to the production infrastructure of three different organizations. Anthropic said the incidents involved three different Claude models: Opus 4.7, Mythos 5, and an internal research test model.

Notably, Anthropic said that in each of these cases “Claude was explicitly told by our prompt that it had no internet access.” It appears that the AI model assumed real-world systems to be part of the exercise it was asked to perform.

That assumption didn’t hold up uniformly, as it turns out. The three models didn’t behave the same way once evidence emerged that their targets were real, which Anthropic flagged as one of the more eye-opening findings Thursday.

Opus 4.7, the oldest of the three, recognized that it had reached a real production system in all four runs of that incident. In two of them, it rationalized that the real company must somehow be part of the exercise, but in all four, it kept attacking anyway, including pulling credentials and touching a database of production data. Mythos 5 also picked up on signs that it was on the real internet, but it talked itself back into believing it was still in a simulation, going on to publish a malicious software package to the public Python software registry PyPI, which was then downloaded and run by outside systems before being caught. Only the internal research test model, Anthropic’s newest, stopped on its own once it concluded the target was real.

In response, Anthropic said significant controls must be placed on these kinds of evaluations if powerful AI models are involved, echoing some sentiments within the cybersecurity community.

The company also noted that Claude was running without the additional safety monitoring and classifiers it deploys on generally available models — safeguards it said would have blocked the behavior, because the evaluations are designed to measure the underlying model’s raw capabilities.

Importantly, Anthropic said it found no evidence of any model “pursuing a goal of its own” and instead merely tried to complete the task it was asked to do.

Though comparisons between the mishaps of these fiercely competitive companies are inevitable, Anthropic in its blog post drew a clear distinction between its cybersecurity tests and those of OpenAI, noting where OpenAI’s model exploited an unknown software vulnerability to break out of its test environment, Anthropic’s models instead reached the internet through a path that had, by mistake, been left open.

Anthropic also drew a distinction between itself and OpenAI by noting that it discovered the incidents itself, through a proactive review, and that the two affected organizations it was able to reach hadn’t previously detected the activity or flagged it to Anthropic. (In contrast, Hugging Face detected the recent intrusion of its own systems first; it was only in the following days that OpenAI identified and disclosed that its own AI agent was the perpetrator.)

The company added that it’s now working with the independent evaluation group METR on a third-party review of the incidents.

OpenAI’s accidental breach of Hugging Face, which was the first verifiable case of an AI lab losing control of its model, has sparked a string of wildly differing reactions from the industry and politicians. This latest disclosure from Anthropic ensures the debate over AI models and security will continue.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

#Anthropic #models #breached #companies #security #tests #TechCrunchAnthropic,OpenAI

Post Comment