1. Kosiorek A, Sabour S, Teh YW, Hinton GE (2019) Stacked capsule autoencoders. Adv Neural Inf Process Sys 32
2. Yoon J (2017) Adversarial Attack to Capsule Networks. Published: [EB/OL]
3. Michels F, Uelwer T, Upschulte E, Harmeling S (2019) On the vulnerability of capsule networks to adversarial attacks. arXiv preprint. arXiv:1906.03612
4. Marchisio A, Nanfa G, Khalid F, Hanif MA, Martina M, Shafique M (2019) CapsAttacks: robust and imperceptible adversarial attacks on capsule networks. arXiv preprint. arXiv:1901.09878
5. De Marco A (2020) Capsule networks robustness against adversarial attacks and affine transformations. PhD Thesis, Politecnico di Torino Turin, Italy