Method for controlling external access to security information by using dual control

A dual control method with a security interface and second mouse pointer manages and blocks unauthorized access to security information, ensuring secure remote control sessions by authenticating and monitoring external access.

WO2025263873A1PCT designated stage Publication Date: 2025-12-26JIRANDATA CO LTD
View PDF 5 Cites 0 Cited by

Patent Information

Application Number
PCT/KR2025/007441
Authority / Receiving Office
WO · WO
Patent Type
Applications
Current Assignee / Owner
Priority Date
2024-06-20
Filing Date
2025-05-30
Publication Date
2025-12-26

AI Technical Summary

Technical Problem

Remote control technologies pose a risk of unauthorized exposure of security information, such as personal or trade secrets, during screen transmission between computers.

Method used

Implementing a dual control method with a security interface that uses a second mouse pointer operated only by internal users to set and manage security data, monitor external access, and block unauthorized access, while allowing controlled access with authentication and video playback for internal users.

Benefits of technology

Enhances security by preventing unauthorized access to sensitive information and providing controlled access, thereby protecting privacy and trade secrets during remote control sessions.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure KR2025007441_26122025_PF_FP_ABST
    Figure KR2025007441_26122025_PF_FP_ABST
Patent Text Reader

Abstract

Disclosed is a method for controlling an external access to security information by using dual control. According to one aspect of the present invention, a method for controlling an external access to security information by using dual control performed in a computing device, comprises the steps of: when external control for maintenance is performed, providing a security interface that can be set by an internal access user by means of dual control as security data for a file or program in which security information exists; monitoring an external access to the security data when the external control is performed; and blocking the external access when the external access to the security data is attempted.
Need to check novelty before this filing date? Find Prior Art

Description

Method for controlling external access to security information using dual control

[0001] The present invention relates to a method for controlling external access to security information using dual control.

[0002]

[0003] We provide security solutions for a wide range of corporate applications for Internet security, and our security solutions are used in a wide variety of fields, including web security, e-mail security, remote access, electronic documents, and e-commerce applications.

[0004] In particular, with the development of computer and communication technology, the use of computers is expanding in various industrial fields as well as in daily life, and remote control technology between computers is being developed and widely used as a means to support not only general users who are not familiar with using computers and the Internet, but also industrial workers who handle a significant portion of their work with computers.

[0005] Remote control is a method in which a user of a remote control computer operates a controlled computer connected to the Internet through the Internet. In this process, the screen information of the controlled computer is transmitted to the control computer, and the controlled computer is operated as if the user of the control computer were directly operating it, so that the computer itself as well as peripheral devices including various output devices are operated.

[0006] At this time, as remote control proceeds, the screen output on the monitor of the controlled computer is transmitted to the control computer, and the user of the control computer can check the screen of the controlled computer in real time. As such, in remote control between computers, the screen of the controlled computer is transmitted to the control computer without any addition or subtraction, and there is a concern that security information such as personal information or trade secrets of the user of the controlled computer that is output on the screen of the control computer may be leaked.

[0007]

[0008] Accordingly, the present invention has been devised to solve the above-described problem, and to provide a method for controlling external access to security information using dual control that can block unprotected exposure of security information during remote control.

[0009] Other objects of the present invention will become more apparent through the preferred embodiments described below.

[0010]

[0011] According to one aspect of the present invention, a method for controlling external access to security information using dual control and a program for executing the method are provided, the method comprising the steps of: providing a security interface that allows an internal access user to set a file or program containing security information as security data when external control for maintenance is performed; monitoring external access to the security data when the external control is performed; and blocking an attempted external access to the security data.

[0012] Here, a second mouse pointer that is operated only by an internally connected mouse device as the security interface is displayed on the screen, and security data is set only by the second mouse pointer.

[0013] Additionally, it searches for files or programs containing security information and displays them on the screen, and sets security data according to user selection using the second mouse pointer.

[0014] Additionally, it searches for security data targeting the current screen and execution window.

[0015] Additionally, when external access is requested for the above security data, external access is permitted when permission input using the second mouse pointer is entered.

[0016] Additionally, when performing external control, the screen is captured and the monitoring video is saved, and when external access to security data is requested, the relevant monitoring video is extracted and displayed on the screen.

[0017] Additionally, the playback speed is determined based on the playback time of the monitoring video.

[0018] Additionally, the screen area dragged and dropped using the second mouse pointer is hidden as a security area.

[0019] Additionally, in the security area, advertising information is displayed and benefits corresponding to the time at which the advertising information is displayed are provided.

[0020] Additionally, the above advertising information is selected by the remote control user.

[0021]

[0022] Other aspects, features and advantages other than those described above will become apparent from the following drawings, claims and detailed description of the invention.

[0023]

[0024] According to the present invention, by providing a dual control interface to internal access users, security can be strengthened by controlling unprotected external access to security information.

[0025]

[0026] FIG. 1 is a schematic diagram of an entire system for controlling external access to security information during remote control according to one embodiment of the present invention.

[0027] FIG. 2 is a flowchart illustrating an external access control process for security information using dual control performed in a computing device according to one embodiment of the present invention.

[0028] FIG. 3 is an exemplary diagram illustrating a security interface providing a dual control mouse point according to one embodiment of the present invention.

[0029] FIG. 4 is a flowchart illustrating an external access processing process for security data during remote control according to one embodiment of the present invention.

[0030] FIG. 5 is an exemplary diagram illustrating an interface for allowing external access to security data according to one embodiment of the present invention.

[0031] FIG. 6 is an exemplary diagram illustrating a security area setting interface using a dual control mouse point according to one embodiment of the present invention.

[0032]

[0033] The present invention is susceptible to various modifications and embodiments. Specific embodiments are illustrated in the drawings and described in detail in the detailed description. However, this is not intended to limit the present invention to specific embodiments, but rather to encompass all modifications, equivalents, and alternatives falling within the spirit and technical scope of the present invention.

[0034] When a component is referred to as being "connected" or "connected" to another component, it should be understood that it may be directly connected or connected to that other component, but that there may be other components intervening. Conversely, when a component is referred to as being "directly connected" or "connected" to another component, it should be understood that there are no other components intervening.

[0035] Terms such as "first" and "second" may be used to describe various components, but these components should not be limited by these terms. These terms are used solely to distinguish one component from another. For example, terms such as "first threshold" and "second threshold" described below may be predefined as thresholds that are substantially different or partially identical in value. However, since there is room for confusion when expressed using the same word "threshold," terms such as "first" and "second" will be used together for convenience of distinction.

[0036] The terminology used herein is merely used to describe specific embodiments and is not intended to limit the present invention. The singular expression includes the plural expression unless the context clearly indicates otherwise. In this specification, it should be understood that the terms "comprises" or "has" indicate the presence of a feature, number, step, operation, component, part, or combination thereof described in the specification, but do not exclude in advance the possibility of the presence or addition of one or more other features, numbers, steps, operations, components, parts, or combinations thereof.

[0037] In addition, it is to be understood that the components of the embodiments described with reference to each drawing are not limited to the specific embodiments, but may be implemented to be included in other embodiments within the scope in which the technical idea of ​​the present invention is maintained, and that multiple embodiments may be re-implemented as a single integrated embodiment even if a separate description is omitted.

[0038] In addition, when describing with reference to the attached drawings, identical components will be assigned identical or related reference numerals regardless of the drawing reference numbers, and redundant descriptions thereof will be omitted. When describing the present invention, if a detailed description of a related known technology is judged to unnecessarily obscure the gist of the present invention, the detailed description thereof will be omitted.

[0039]

[0040] FIG. 1 is a schematic diagram illustrating an entire system for controlling external access to security information during remote control according to one embodiment of the present invention, FIG. 2 is a flowchart illustrating a process for controlling external access to security information using dual control performed in a computing device according to one embodiment of the present invention, and FIG. 3 is an exemplary diagram illustrating a security interface that provides a dual control mouse point according to one embodiment of the present invention.

[0041] Referring to FIG. 1, the entire system includes a target computer (10) and a remote control computer (30), and a security agent (12) for controlling access to security information from the remote control computer (30) is installed in the form of an application program on the target computer (10).

[0042] Access by remote control users must be controlled for files or programs containing security information (hereinafter referred to as “security data”) that is accessible only to authorized users, such as personal information or confidential information.

[0043] A remote control computer (30) connects to a target computer (10) via a communication network such as the Internet and controls it remotely. In other words, a remote user other than an internal user of the target computer (10) uses the target computer (10). Typically, a remote control program periodically captures the screen of the target computer (10) and transmits it to the remote control computer (30), and the remote control computer (30) controls the target computer (10) by remotely manipulating the mouse pointer or inputting through the keyboard while viewing the received screen. Of course, this is just one example, and any method for remote control may be used.

[0044] However, the security agent (12) installed on the target computer (10) controls (blocks or allows use with the permission of the user of the target computer (10)) the remote control computer (30) from accessing the security data.

[0045] Referring to Figure 2, which illustrates an external access control process performed on a target computer (10), when external control is performed for purposes such as maintenance, a security interface capable of dual control is provided (S210).

[0046] Referring to FIG. 3 as an example of a security interface, in addition to a mouse pointer (310) controlled by a remote control computer (30), a second mouse pointer (320, hereinafter referred to as a dual-control mouse pointer) controlled only by an internal access user is operated. The internal access user can control the second mouse pointer (320) to set a desired file or program as security data. As shown in the drawing, the user can set or release the security data by right-clicking.

[0047] According to another example, the security agent (12) may automatically search for files or programs containing security information and set them as security data. That is, the security data setting may be automatically set by searching for files or application programs containing personal information such as resident registration numbers and addresses. According to another example, the target computer (10) may search for files or programs containing security information, display a security data setting interface screen including the searched information, and set the security data according to a user selection using a second mouse pointer (320). That is, the target computer (10) may determine that the security data is the target data and provide a user interface screen that allows the user to directly select and set the security data based on the searched information, or may provide a user interface screen that allows the user to directly search for and set the security data.

[0048] And, according to an example, the target computer (10) may determine whether all files or applications are secure data, but for efficient processing, it determines whether only files and applications existing on the current screen and in the running window are secure data, and this may be performed periodically or whenever a change occurs in the screen or the running window.

[0049] Accordingly, a remote control computer (30) user can perform maintenance on a target computer (10) remotely using the first mouse pointer, and at the same time, an internal access user can block external access by setting files or application programs existing in the current screen as security data using the second mouse pointer.

[0050] And, when security data is set, the security data can be specifically displayed. As shown in the drawing, the security data (security file 1) is marked with a red block to ensure that the target computer user (hereinafter referred to as internal access user) and the remote control computer (30) user (hereinafter referred to as remote control user) recognize that it is security data.

[0051] Referring back to Figure 2, external access is monitored according to external control (S230). For example, the screen is periodically captured and saved, and it is monitored whether a remote control user attempts to access secure data.

[0052] When external access to security data is recognized, control processing such as blocking or inquiry to internal access users is performed (S240).

[0053]

[0054] FIG. 4 is a flowchart illustrating a process for processing external access to security data during remote control according to one embodiment of the present invention, and FIG. 5 is an exemplary diagram illustrating an interface for allowing external access to security data according to one embodiment of the present invention.

[0055] Referring to FIG. 4, when external control is performed and access to secure data is recognized by the external control (S410), authentication is requested from the internal access user (S420). Referring to FIG. 5, when external access is requested for secure data, security file 1 (e.g., mouse click by external control on security file 1), an authentication window (530) that the internal access user can confirm is displayed.

[0056] The authentication window restricts input to a second mouse pointer that is operated only by internal access users.

[0057] At this time, according to an example, a monitoring video (440) for external access is displayed on one side of the authentication window (530). That is, the stored monitoring video is provided as a video so that the internal access user can immediately check what kind of history the external access user has when attempting to access the security data. Here, for quick confirmation, only the monitoring video for a certain period of time (e.g., 20 seconds or 1 / 3 of the total length, etc.) prior to the external access request for the security data is extracted and displayed, and the playback speed is varied according to the playback time of the video (e.g., the longer the playback time, the faster the playback speed).

[0058] Authentication is processed by determining whether access permission using the second mouse pointer is entered through the authentication window (530) (S430).

[0059] If authentication is successful, external access to the security data is permitted (S440), and if authentication fails, access is denied (S450, for example, an access denied message is displayed on the screen).

[0060] In addition, although not shown in the drawing, a dialog box between an internal access user and an external access user is displayed on one side of the screen as a security interface, allowing a conversation to be conducted between the two, such as asking whether or not to access secure data.

[0061]

[0062] FIG. 6 is an exemplary diagram illustrating a security area setting interface using a dual control mouse point according to one embodiment of the present invention.

[0063] Referring to FIG. 6, the security agent provides a function to hide the screen area that has been dragged and dropped using the second mouse pointer as a security area (610).

[0064] Therefore, internal users can hide some parts of the screen area from remote control users by simply dragging and dropping.

[0065] In one example, advertising information is displayed in the secure area (610), and benefits corresponding to the display time of the advertising information are provided to internal users or remote control users. For example, some or all of the maintenance costs associated with remote control for maintenance of the target computer (10) are applied to advertising revenue resulting from the display of advertising information in the secure area. Therefore, internal users can save on maintenance costs.

[0066] Additionally, according to an example, advertising information can be selected by a remote control user, thereby allowing the remote control user to display the advertisement of his / her choice to internally connected users.

[0067]

[0068] A computer program stored in a computer-readable medium that performs an external access control method for security information using dual control according to the present invention described above may be provided.

[0069] Additionally, the method for controlling external access to security information using the aforementioned dual control can be implemented as computer-readable code on a computer-readable recording medium. Computer-readable recording media include all types of recording media that store data that can be deciphered by a computer system. Examples include read-only memory (ROM), random access memory (RAM), magnetic tape, magnetic disks, flash memory, and optical data storage devices. Furthermore, the computer-readable recording medium can be distributed across computer systems connected via a computer communications network, and stored and executed as readable code in a distributed manner.

[0070] In addition, although the above has been described with reference to preferred embodiments of the present invention, it will be understood by those skilled in the art that various modifications and changes can be made to the present invention without departing from the spirit and scope of the present invention as set forth in the claims below.

Claims

1. In a method for controlling external access performed in a computing device, When external control for maintenance is performed, a step of providing a security interface that allows internal access users to set up dual control as security data for files or programs containing security information; A step of monitoring external access to the security data when the above external control is performed; and Including a step of blocking external access to the above security data, A method for controlling external access to security information using dual control, in which a second mouse pointer operated only by an internally connected mouse device as the above security interface is displayed on the screen, and security data is set only by the second mouse pointer.

2. In claim 1, A method for controlling external access to security information using dual control, which searches for a file or program containing security information and displays it on the screen, and sets security data according to a user selection using the second mouse pointer.

3. In claim 2, A method for controlling external access to security information using dual control, which searches for security data targeting the current screen and execution window.

4. In claim 3, A method for controlling external access to security information using dual control, which allows external access when an input for permission using the second mouse pointer is entered when external access to the above security data is requested.

5. In claim 4, A method for controlling external access to security information using dual control, which captures the screen and saves the monitoring image when performing external control, and extracts the relevant monitoring image and displays it on the screen when external access to security data is requested.

6. In claim 5, A method for controlling external access to security information using dual control, which determines the playback speed according to the playback time of the monitoring video.

7. In claim 1, A method for controlling external access to security information using dual control, in which the screen area dragged and dropped using the second mouse pointer is hidden as a security area.

8. In claim 7, Advertising information is displayed in the above security area, A method for controlling external access to security information using dual control, in which benefits corresponding to the time at which the above advertising information is displayed are provided to internal access users.

9. In claim 8, A method for controlling external access to security information, wherein the above advertising information is selected by a user performing the above external control.

10. A computer program stored in a computer-readable medium that performs a method of controlling external access to security information using dual control, wherein the computer program causes a computer to perform the following steps, and the steps are: When external control for maintenance is performed, a step of providing a security interface that allows internal access users to set up dual control as security data for files or programs containing security information; A step of monitoring external access to the security data when the above external control is performed; and Including a step of blocking external access to the above security data, A computer program stored in a computer-readable medium, which displays a second mouse pointer that is operated only by an internally connected mouse device as the above security interface, and sets security data only by the second mouse pointer.

Citation Information

Patent Citations

  • Method and system for security materialization of remote connection for the same

    KR100733476B1

  • Pairing digital system for smart security and method for providing same

    KR1020140007303A

  • System and Method for controlling remote device

    KR1020140067186A

  • Virtual fields driving related operations

    KR1020240024735A

  • Remote Multi-Access System and Its Operating Methods

    KR102085959B1