PerDoor is a persistent-by-construction backdoor injection technique in a Federated Learning (FL) framework. PerDoor uses adversarial perturbation and targets parameters of the centralized FL model that deviate less in successive FL rounds and contribute the least to the main task accuracy for…