Data poisoning is best tackled at its root, i.e., by learning a clean (backdoor-free) model despite a poisoned training data. @qzhao903.bsky.social presents a defense at ICML 2026, in which we reformulate this strategy as a coreset selection problem, giving rise to "Anti-Backdoor Coreset Selection"