Learning Path

HTML5 Security

Learn how HTML5 security provides a first line of defense in your web applications.

What you will learn

HTML5 Security will teach you how to secure your web applications. You will learn first about the components that make up an HTML5 application, before being given the ability to identify, assess and resolve threats to these components. Finally you will put your knowledge in to practice by securing a sample application.

This course is made up of 4 main courses: HTML5 components – a guide to the components that you will need to know about. Identifying areas of HTML5 vulnerability – How to identify and assess the common types of HTML5 attacks Web app protection using HTML5 – Prevention, response and resolution of HTML5 vulnerabilities Problem based approach – Bug bounty report resolution exercise On completion of this learning path, you will have gained a comprehensive understanding of HTML5 components security that will enable you to secure your web applications with confidence.

Wistia video thumbnail


Introduction to HTML5 Security

Course — 00:28:58

This course will provide you with an introduction to HTML5 Security and it’s importance in web applications.

HTML5 Elements

Course — 01:16:18

A guide to the elements and API’s most commonly used in HTML5.

Identifying areas of HTML5 vulnerability

Course — 01:08:59

How to identify and assess the most common HTML5 vulnerabilities and methods of HTML5 based attack on web applications?

Web app protection using HTML5

Course — 02:39:24

Learn prevention, response and resolution of HTML5 vulnerabilities for the most common HTML5 elements AND api’s.

HTML5 Security in the wild – a Problem based approach

Course — 01:29:59

Demonstate an ability to apply knowledge of HTML5 Security to resolving vulnerabilities in HTML5 code.

HTML5 Security Skill Assessment

Assessment — 16 questions — 00:08:00

Meet the author

Robert Morel is a Computer Science graduate, working as Head of Application Security for a large Enterprise. Previously Robert worked as a SecOps Engineer for a leading cryptocurrency futures exchange and prior to this a Senior web developer and IT security officer.

While at university, Robert started his own web development company. His first website was a static HTML site advertising a plumber. His student prices attracted business, and by the end of university, he had a team of five specializing in developing angular single-page applications and training courses.

Most of Robert’s work since then has been within fintech and blockchain. His first role after university involved migrating large financial data sets from legacy silos onto the blockchain, using Java. Working in fintech, he became an expert in developing secure and hardened web applications. Through this, he also became an experienced security researcher and ethical hacker, as well as a fintech author and blogger.

One of Robert’s favorite parts of working in web app security is having the opportunity to work with penetration testers and bug bounty hunters. Managing, assessing and resolving security reports has taught him more than ever about vulnerabilities and exploits. In his spare time, Robert enjoys developing web-scraping applications, practicing the violin and Chinese calligraphy.

The details

Learning path insights

How to claim CPEs

Should you complete this learning path, you’ll be able to download a certificate of completion. Use this to claim your CPEs or CPUs.

No software. No set up. Unlimited access.

Skip the server racks and spin up a realistic environment with one click. Infosec Skills cyber ranges require no additional software, hardware or server space so your team can spend less time configuring environments and more time learning. Unlimited cyber range access is included in every lnfosec Skills subscription so your team can skill up however they learn best.

Plans & pricing

  • Infosec Skills Personal

    $299 / year

    • 190+ role-guided learning paths (e.g., Ethical Hacking, Threat Hunting)
    • 100s of hands-on labs in cloud-hosted cyber ranges
    • Custom certification practice exams (e.g., CISSP, Security+)
    • Skill assessments
    • Infosec peer community support
  • Infosec Skills Teams

    $799 per license / year

    • Team administration and reporting
    • Dedicated client success manager
    • Single sign-on (SSO)
      Easily authenticate and manage your learners by connecting to any identity provider that supports the SAML 2.0 standard.
    • Integrations via API
      Retrieve training performance and engagement metrics and integrate learner data into your existing LMS or HRS.
    • 190+ role-guided learning paths and assessments (e.g., Incident Response)
    • 100s of hands-on labs in cloud-hosted cyber ranges
    • Create and assign custom learning paths
    • Custom certification practice exams (e.g., CISSP, CISA)
    • Optional upgrade: Guarantee team certification with live boot camps

Unlock 7 days of free training

  • 1,400+ hands-on courses and labs
  • Certification practice exams
  • Skill assessments

You're in good company


We use Infosec Skills to provide continuous training to our technicians and to prepare them for various certifications. Infosec Skills allows us to create personalized training programs that focus on each of our technicians’ particular roles and see their progress as they take courses. We also, recommend it to clients to make their IT support teams better.

Caleb Yankus


This has been utilized to bridge the skills gap across our cyber team and to aid them as they prepare for their various certifications. It also has provided a nice learning foundation for our various cyber team members to utilize as we continue to find ways for cross-utilization with operations while minimizing the downtime needed to ensure everyone’s knowledge is the same.

Daniel Simpson


We use Infosec Skills to provide base level knowledge for employees. We also use the services to provide in depth learning for employees as they encounter new technologies. If an employee is is assigned to a new project, we can rely on Infosec Skills to provide a rapid concentrated learning environment. This rapid concentrated learning positions our employees for success.

Infosec Skills Teams client