Defending Against Gradient Inversion Attacks for Biomedical Images via Learnable Data Perturbation