Shadow defense against gradient inversion attack in federated learning