Web application-based remote file quarantine processing method and computing device for performing same

WO2026168640A1PCT designated stage Publication Date: 2026-08-13NAMUSOFT
View PDF 0 Cites 0 Cited by

Patent Information

Authority / Receiving Office
WO · WO
Patent Type
Applications
Current Assignee / Owner
Filing Date
2025-02-27
Publication Date
2026-08-13

Smart Images

  • Figure KR2025002717_13082026_PF_FP_ABST
    Figure KR2025002717_13082026_PF_FP_ABST
Patent Text Reader

Abstract

A method performed by a computing device, according to one aspect of the technical concept of the present disclosure, comprises the steps of: for a file stored in a local storage, receiving a request for opening the file through a web application; an agent, executed in the computing device, uploading the file to a remote storage in response to receiving the request for opening the file; for the uploaded file, executing the opening of the file through the web application; downloading, from the remote storage, the file that has been processed through the web application; and updating the file stored in the local storage to the downloaded file.
Need to check novelty before this filing date? Find Prior Art

Description

Web application-based remote file isolation processing method and computing device performing the same

[0001] The technical concept of the present disclosure is to a web application-based remote file isolation processing method and a computing device for performing the same.

[0002]

[0003] Programs such as presentation software, spreadsheets, and word processing are routinely used by users to perform tasks based on computing devices such as desktop PCs, laptop PCs, tablet PCs, and smartphones. Recent cyber attacks involving files viewed, edited, or processed through these programs take the form of attaching malicious code to files that users routinely receive or view, thereby inducing users to inadvertently open the files using programs installed on their computing devices; upon opening the files, auto-execution scripts, such as macros attached to the files, are executed, thereby carrying out an attack on the computing devices.

[0004] Furthermore, recent cyber attacks disguise file extensions to induce users to run executable files. For example, when an executable file (.exe) disguised as an Excel or PDF is executed on a computing device, data stored on the device may be stolen, or the device may be exposed to encryption attacks by ransomware.

[0005] Therefore, an alternative is required to safely view or edit files, such as documents, on computing devices.

[0006]

[0007] The problem that the technical concept of the present disclosure aims to solve is to provide a method for preventing cyber attacks on a computing device in advance by viewing or editing executable files that are downloaded via email or the Internet and contain malicious code or are disguised as legitimate files in an environment isolated from the computing device, rather than viewing or directly running them in an application installed on the user's computing device.

[0008] The technical problems that the technical concept of the present disclosure aims to solve are not limited to those mentioned above, and other unmentioned problems will be clearly understood by those skilled in the art from the description below.

[0009]

[0010] To achieve the above objectives, according to one aspect of the technical concept of the present disclosure, a method is disclosed comprising the steps of: receiving a request to open a file via a web application for a file stored in local storage; an agent running on the computing device uploading the file to remote storage in response to the reception of the request to open the file; executing a file opening via the web application for the uploaded file; downloading the file processed via the web application from the remote storage; and updating the file stored in the local storage with the downloaded file.

[0011] According to one embodiment, the receiving step may include: receiving user input corresponding to a first action of a user for a file among the files stored in the local storage that has an extension for which the default application is not set as the agent; providing a list of services including opening a file through the web application in response to the received user input, wherein opening a file through the web application is a function provided by the agent; and receiving a request to open a file through the web application based on the list of services.

[0012] According to one embodiment, the receiving step may include receiving user input corresponding to a second action of the user for a file among the files stored in the local storage that has an extension set as the agent by the default application.

[0013] According to one embodiment, the uploading step may include the step of the agent transmitting authentication information to the remote storage, the authentication information including at least one of an authentication token issued by the remote storage or web application server and the user's account information, and the step of uploading the file to the remote storage as authentication is completed based on the transmitted authentication information.

[0014] According to one embodiment, the executing step includes the step of the agent providing connection information to the web application for executing file opening through the web application for the uploaded file, and the connection information may include at least a portion of the location information of the uploaded file within the remote storage and the URL of the web application server linked with the web application.

[0015] According to one embodiment, the executing step may include the step of the agent transmitting authentication information to the web application server, the authentication information including at least one of an authentication token issued from the remote storage or web application server and the user's account information, and the step of providing the uploaded file through the web application as authentication is completed based on the transmitted authentication information.

[0016] According to one embodiment, the executing step may include the step of activating an exclusive mode that restricts editing or deletion by an application other than the agent for a file stored in the local storage.

[0017] According to one embodiment, the updating step may further include the step of disabling the exclusive mode after the file stored in the local storage is updated with the downloaded file.

[0018] According to one embodiment of the technical concept of the present disclosure, a computer-readable storage medium is disclosed having a program for executing the above-described method recorded thereon.

[0019] According to one embodiment of the technical concept of the present disclosure, a computing device comprises at least one processor and a memory for storing instructions executable by the at least one processor, wherein when the instructions are executed by the at least one processor, the at least one processor receives a request to open a file via a web application for a file stored in the local storage of the computing device—wherein opening a file via a web application is a function provided through an agent executed by the at least one processor, and in response to the reception of the request to open a file, uploads the file to remote storage, executes the file opening via the web application for the uploaded file, downloads the file processed via the web application from the remote storage, and updates the file stored in the local storage with the downloaded file.

[0020]

[0021] According to the technical concept of the present disclosure, an agent can prevent local storage and computing devices containing it from being attacked by malware contained in a file by uploading the file to remote storage separated from local storage during the process of opening a file stored in local storage, and then opening the file uploaded to remote storage through a web application.

[0022] In addition, by including an authentication process using authentication tokens, etc., when uploading files to remote storage or opening files through a web application, unauthorized access to files by unauthorized users can be effectively prevented.

[0023] In addition, when a file is opened via a web application by an agent, exclusive mode is enabled for the file stored in local storage, thereby blocking the file from being modified by other applications.

[0024] The effects obtainable through the technical concept of the present disclosure are not limited to those mentioned above, and other unmentioned effects will be clearly understood by those skilled in the art to which the present invention belongs from the description below.

[0025]

[0026] A brief description of each drawing is provided to help to better understand the drawings cited in the present disclosure.

[0027] FIG. 1 is a simplified block diagram illustrating a system for a web application-based remote file isolation processing method according to the present disclosure.

[0028] FIG. 2 is a flowchart illustrating a remote file isolation processing method according to embodiments of the present disclosure.

[0029] FIG. 3 is a flowchart illustrating a file open request operation according to embodiments of the present disclosure.

[0030] Figure 4 is an example diagram of a file open request operation according to Case 1 of Figure 3.

[0031] FIG. 5 is a diagram illustrating the sequence of operations in a system according to embodiments of the present disclosure.

[0032]

[0033] Various embodiments are described in more detail below with reference to the accompanying drawings, which are part of this specification and illustrate specific embodiments. However, embodiments may be implemented in various different forms and should not be construed as being limited to the embodiments provided herein; rather, these embodiments are provided to ensure that this disclosure is thorough and complete and conveys the full scope of the embodiments to a person skilled in the art. Embodiments may be implemented as methods, systems, or devices. Accordingly, embodiments may take the form of hardware implementations, implementations that are entirely software, or implementations that combine software and hardware modes. Accordingly, the following detailed description is not to be interpreted as limiting.

[0034] Hereinafter, embodiments according to the technical concept of the present disclosure will be described in detail with reference to the attached drawings.

[0035]

[0036] FIG. 1 is a simplified block diagram illustrating a system for a web application-based remote file isolation processing method according to the present disclosure. More specifically, the system (10) can be used to enable a user (110) to perform tasks such as viewing, editing, creating, sharing, and disclosing various files (hereinafter collectively referred to as 'files') based on a web application, for example, word processing documents, spreadsheet documents, presentation documents, image files, video files, and other various files, while the user (110) is isolated from malware and other malicious threats.

[0037] Referring to FIG. 1, the system (10) may include a computing device (130).

[0038] The computing device (130) may include a desktop or laptop computer, a tablet computer, a smartphone, a personal digital assistant (PDA), etc. The computing device (130) may be a type of local device distinct from the web application server (170) and remote storage (190) described later, but is not necessarily so. The computing device (130) may include at least one processor and a memory that stores instructions executable on said at least one processor. The at least one processor may be implemented as hardware such as a CPU, an application processor (AP), an MCU, a GPU, an NPU, an integrated circuit, an ASIC, an FPGA, etc., and the memory may be composed of a storage medium such as ROM, RAM, flash memory, an SSD, an HDD, etc., or a combination of storage media.

[0039] The computing device (130) may include, for example, a web application (131), an agent application (133, hereinafter referred to as an agent), and may include an operating system that runs the exemplified applications.

[0040] A web application (131) may be a browser-based application that enables a user (110) to perform certain operations (viewing, editing, and / or saving, etc.) on a file (document file, etc.) accessed using a browser or other web-based application. For example, the web application (131) may include various applications such as a cloud-based word processing application, a spreadsheet application, a presentation application, an image or video editing application.

[0041] A web application (131) can operate in conjunction with a web application server (170) via a network (150) and, through this, provide services related to file operations to a user (110). For example, the web application (131) can provide services related to file operations provided by the web application server (170) to the user (110), and can obtain a request related to file operations (e.g., a request to edit a document) from the user (110), transmit it to the web application server (170), receive the result, and display it to the user (110). Meanwhile, the web application server (170) can perform operations such as saving and loading files in conjunction with a remote storage (190).

[0042] The agent (133) may correspond to an application program that executes a remote file isolation processing method according to an embodiment of the present disclosure when performing file operations through the web application (131) of the user (110).

[0043] The agent (133) can upload a file to remote storage (190) when a user (110) opens or executes a file in local storage (137) to work with it through a web application (131), and can control the web application (131) so that the uploaded file is opened or executed through the web application (131). According to an embodiment, the file may include various files created on a computing device (130) or downloaded via email, the internet, etc., and stored in local storage (137). According to an embodiment, the agent (133) may be configured to operate only on files existing in a specific area within the designated local storage (137) (e.g., local disk volume (D:, E:, F:, etc.), folder (Desktop, Downloads, My Documents, etc.)) or a network drive (e.g., / 192.168.20.100 / , etc.).

[0044] The agent (133) can download a file processed (edited, etc.) through the web application (131) from the remote storage (190) and update an existing file stored in the local storage (137) with the downloaded file. Here, the processed file does not mean only a file that has been processed, but may include a file obtained during the processing process through the web application (131).

[0045] Additionally, when updating a downloaded file, the agent (133) may create a copy of the original (existing file) in the same folder location with a different name according to a pre-specified rule, or move it to a pre-specified backup space and then update the original, or update the original file without creating a backup of the original.

[0046] Meanwhile, the agent (133) can be mounted as a shell extension in a file manager, for example, Windows Explorer. In this case, the functions provided by the agent (133) are listed in a context menu that appears when a user performs a specific input (e.g., right-click) after selecting a specific file, and can be provided as the user selects an item for the desired function (e.g., open web editing mode, online document editing, cloud document editor, etc.).

[0047] Accordingly, various functions of the agent (133), such as opening a file, opening a web editing mode, and creating a file, are provided as a context menu and can be executed in response to the selection of the user (110). In some embodiments, some functions of the agent (133), such as opening a web editing mode, may be automatically executed when access to a document file having a specific extension is detected.

[0048] At this time, if the user (110) selects to create a new file from the context menu displayed by right-clicking the mouse at a specific folder location, a new file with a default name (newdocument.doc, newslide, ppt, etc.) is created on the local disk, and the agent (133) may upload the file to a remote cloud server, etc. and access it through a web application, or may receive the name of the file to be created on the local disk, create the file with that name, and upload the created file to remote storage (190).

[0049] A remote document processing method executed by an agent (133) and related configurations will be described in more detail below with reference to FIGS. 2 to 4.

[0050] According to an embodiment, the computing device (130) may further include a local application (135). The local application (135) may include various applications capable of performing specific operations on a file, such as a word processing application, a spreadsheet application, a presentation application, an image editing application, a video editing application, etc. The local application (135) may allow the user (110) to create, open, edit, and save to the local storage (137) a file or other work product of the local storage (137) without the aforementioned remote file isolation process.

[0051] As illustrated in FIG. 1, the computing device (130) may include one or more local storage (137) that allow the user (110) to store files locally. For example, using the local storage (137), the user (110) may store documents at a specific location (e.g., a specific folder) on a hard drive or another storage device physically connected to the computing device (130), such as a USB storage device.

[0052] Additionally, the computing device (130) may be configured to access one or more remote storage (190) using a network connection (150), thereby enabling the user (110) to store documents using one or more remote storage (190). In one embodiment, the remote storage (190) may be a cloud computing storage service or other similar storage service. Although specific examples have been given, other types of storage may be used in combination with the embodiments disclosed herein.

[0053] FIG. 2 is a flowchart illustrating a remote file isolation processing method according to embodiments of the present disclosure. The remote file isolation processing method (20) illustrated in FIG. 2 may be implemented as at least part of an agent (133) in a computing device (130). Hereinafter, the description will be made with reference to FIG. 1, but for convenience of explanation, it will be assumed that each operation is performed by the computing device (130).

[0054] The method (20) can be started in an action (201) that activates an agent (133) of a computing device (130).

[0055] To activate the agent (133), the computing device (130) may require the user (110) to provide user credentials. The user credentials may include a user ID, a password, or other inputs associated with and identifying a specific user. In one embodiment, the user credentials may be configured to be identical or similar to credentials for activation and access to a web application server (170), remote storage (190), etc.

[0056] In one embodiment, as proof that the user credentials have been successfully established in the web application server (170) or remote storage (190), the web application server (170) or remote storage (190) may issue an authentication token for the corresponding user ID to the agent (133). The authentication token can be provided together with the web application URL and the location information of the file within the remote storage, which allows access and processing (editing, etc.) of the file, to the web application (131) after the agent (133) uploads the file to the remote storage (190), thereby proving that a pre-authenticated user is requesting access to the file within the web application server (170) and remote storage (190).

[0057] In one embodiment, the user credentials may not be required. For example, when a single sign-on credential is used to enable access to an agent (133), a web application (131), an operating system of the computing device (130), and remote storage (190) in the computing device (130), the agent (133) may not require separate user credentials when user credentials are entered in the web application (131), etc.

[0058] Meanwhile, when the user (110) attempts to open a file through the web application (131) while the agent (133) is not activated, the computing device (130) may request the user (110) to perform a login process to activate the agent (133).

[0059] In operation (203), the computing device (130) can receive a request to open a file through the user's (110) web application (131).

[0060] FIG. 3 is a flowchart illustrating a file open request operation according to embodiments of the present disclosure, and will be explained with further reference to FIG. 3. In FIG. 3, for convenience of explanation, the case where the file is a document is used as an example, but the embodiments of the present disclosure are not limited to documents.

[0061] When a user (110) attempts to open a file according to a preset action for a specific document in local storage (137), the computing device (130) can receive a request to open the document through a web application (131) for the document.

[0062] First, regarding the target document to be accessed and opened, an embodiment (Case 1) is described in which the default application for the document extension (docx, pptx, xlsx, etc.) in the operating system of the computing device (130) is not set as an agent (133).

[0063] When the computing device (130) receives user input (301) corresponding to a first action of the user (110) regarding a target document, it may provide the user (110) with a list of services including opening the document through a web application (131) (303). When the computing device (130) receives a user selection (305) from the user (110) to open the document through the web application (131), it may recognize that it has received a request (309) to open the document through the web application (131) and may perform a subsequent action. Here, the first action may include the act of the user (110) placing a cursor on the target document and right-clicking the mouse. The list of services provided to the user (110) may be provided as part of a context menu. According to an embodiment, the list of services corresponding to the extension of the target document file may be dynamically changed and provided in the context menu.

[0064] FIG. 4 is an example diagram of a file opening request operation according to Case 1 of FIG. 3. Referring to the example diagram of FIG. 4, the embodiment (Case 1) described in more detail can be managed (viewing, copying / moving, deleting, etc.) various files stored in local storage (137) or network storage through a file manager (500; e.g., Windows Explorer, macOS Finder, etc.) provided by the operating system of the computing device (130). Taking the case where the file manager is Windows Explorer as an example, the file manager (500) can provide a context menu (510) for a specific file in response to a user's first action (e.g., right-clicking the mouse) on the file. The context menu (510) may be composed of menu items corresponding to each of the various functions that can be provided for the file, and may include, e.g., open, edit, print, copy, delete, etc.

[0065] As described above in FIG. 1, the agent (133) according to an embodiment of the present disclosure may be mounted as a shell extension in a file manager. In this case, the functions provided by the agent (133) may be listed in a context menu (510). In the embodiment of FIG. 4, the functions provided by the agent (133) may include switching to an edit mode, opening an edit mode, opening a web edit mode (512), setting up collaboration, etc. Among these, the function of opening a web edit mode (512) may correspond to the function of "opening a file through a web application (131)" described above.

[0066] When the user (110) selects the web edit mode open (512) function among the functions of the agent (133) listed in the context menu (510), the agent (133) can perform isolation processing on the corresponding file according to the actions (205 to 211) to be described later.

[0067] According to one embodiment, the agent (133) may be implemented as a separate application rather than mounted as a shell extension. In this case, the agent (133) may be displayed as one of the applications for opening the file through the 'connect program' (514) item in the context menu (510) for the file, and subsequent operations (205 to 211) may be performed as the agent (133) is selected by the user.

[0068] Next, regarding the target document to be accessed and opened, an embodiment (Case 2) is described in which the default application for the extension of the document is set as an agent (133) in the operating system of the computing device (130).

[0069] When the computing device (130) receives user input (307) corresponding to the second action of the user (110) regarding the target document, it can recognize that it has received (309) a request to open the document (open in web editing mode) through the web application (131) among the functions of the agent (133), and can perform a subsequent action.

[0070] Here, the second action may include the user (110) placing a cursor on the target document and double-clicking the mouse.

[0071] In order to pre-specify a default application via double-click, when the agent (133) is installed on the computing device (130), a state may be added in which the default application (default program) of the operating system for the extension of the document file is changed to the agent (133). Alternatively, after the agent (133) is installed, a state may be added in which the default application for the extension of the document file is set to the agent (133) through the setting function of the operating system.

[0072] Referring again to FIG. 2, in operation (205), the computing device (130) can upload a file selected by the user (110) from local storage (137) to remote storage (190) in response to receiving a request to open a file through a web application (131). At this time, the agent (133) can upload the file to a location (folder, etc.) corresponding to the user account within the remote storage (190) by transmitting the account information received during the agent activation step and / or the authentication token issued after user authentication from the remote storage (190) or the web application server (170) to the remote storage (190) so that authentication is completed.

[0073] In operation (207), the computing device (130) can perform a file opening via a web application (131) for a file uploaded to remote storage (130).

[0074] At this time, a web application (131) capable of opening a file is used according to the extension of the uploaded file, and the uploaded file can be opened through the connection between the web application (131) and the web application server (170).

[0075] More specifically, when a file is uploaded to the remote storage (190), the remote storage (190) provides the path of the uploaded file to the agent (133), and the agent (133) runs a web application (131) to access a pre-specified URL of a web application server (170) that includes the file location information of the uploaded remote storage (190) corresponding to the file, so that the file uploaded to the remote storage (190) can be opened in the web application (131).

[0076] According to an embodiment, the URL of a pre-specified web application server (170) may be a URL that the agent (133) has pre-identified to correspond to a file extension. Alternatively, the URL may be a default URL that the web application server (170) dynamically assigns to correspond to the extension of an uploaded file to be viewed through the web application server (170).

[0077] According to an embodiment, the web application server (170) may refer to the file location information within the remote storage (190) transmitted when the web application (131) attempts to connect, and may access and view the file on the web application server (170), or may copy the file uploaded to the remote storage (190) back to the web application server (170), view it, and then provide it to the web application (131) for editing.

[0078] According to an embodiment, before or when a web application (131) attempts to connect to a web application server (170) via a URL, an agent (133) transmits user authentication information or a pre-issued authentication token to the web application server (170) through the web application (131), and then the document to be edited can be displayed on the web application (131) only when authentication is successful.

[0079] In some embodiments, the agent (133) may enable an exclusive mode for the file when uploading it to remote storage (190) to restrict other application(s) other than the agent (133) from editing or deleting the file.

[0080] According to an embodiment of the present disclosure, a file in local storage (137) is not opened directly through a local application (135), but is uploaded to remote storage (190), and then the uploaded file is opened through a web application (131) and a web application server (170). That is, since malware attached to the file is not viewed through a local application (135) within the computing device (130), it is possible to prevent direct access to and modification or encryption of the file in local storage (137).

[0081] In operation (209), the computing device (130) can download a file processed (worked on) through a web application (131) from remote storage (190).

[0082] The above-described processed file may be a product that is returned and stored in remote storage (190) with the work content edited or changed by the user (110) reflected upon the termination of the user's (110) web application (131). However, the technical concept of the present disclosure is not limited thereto. The above-described processed file may include an intermediate product that is returned and stored in remote storage (190) with the user's (110) edited changes reflected at that time when the user (110) directly requests saving or when it is automatically saved at regular intervals while using the user's (110) web application (131).

[0083] In another example of implementation, when a user terminates the web application (131) after working on a file in the web application (131), the application server (170) confirms that the connection with the web application (131) has been terminated and saves the last modified file back to the remote storage (190). The remote storage (190) may provide the modified file to the agent (133) or provide information to the agent (133) that the file has been modified, thereby allowing the agent (133) to download the file. In operation (211), the agent (133) may update the file stored in the local storage (137) with the file downloaded from the remote storage (190). In other words, the computing device (130) may replace the original file before the user (110) started the work with a file reflecting the user's (110) work and save it to the local storage (137).

[0084] Additionally, when a user terminates the web application (131) after renaming a file in the web application (131), the application server (170) confirms that the connection with the web application (131) has been terminated and can save the last modified file back to the remote storage (190). In this case, the remote storage (190) may contain both the file before the renaming and the file after the renaming. The file after the renaming may correspond to the last modified file, and the file before the renaming may correspond to the original uploaded file, the last modified file, or a file with some modifications reflected before the last modification. The remote storage (190) can provide the modified file to the agent (133) or provide information to the agent (133) that the file has been modified, thereby allowing the agent (133) to download the file. Two files stored in the remote storage (190) can be downloaded simultaneously, so that the existing file (the file before the name was changed) is updated, and the file created in the remote storage (190) with the new name can be newly created in the local storage (137).

[0085] Additionally, if the agent (133) uploaded the file to the remote storage (190) by opening the file in exclusive mode, the file can be replaced with a file reflecting the work and, after the final update to the local storage (137), the exclusive mode can be disabled so that the file can be accessed by other applications.

[0086] In the embodiment of the present disclosure, as described above, a method is applied in which a file remotely edited on the web through a web application (131) is transmitted from remote storage (190) to local storage (137) and the file source in local storage (137) is updated.

[0087]

[0088] FIG. 5 illustrates a sequence of operations in a system according to embodiments of the present disclosure. FIG. 5 illustrates a sequence of operations representing an exemplary situation that may occur in a system (10, FIG. 1) when a user (110, FIG. 1) uses the aforementioned remote file processing method (20, FIG. 2). In describing FIG. 5 below, FIG. 1 through 4 are referenced together, but redundant descriptions are omitted, and the file processing process is described from the perspective of the system. Meanwhile, FIG. 5 illustrates a sequence of operations in a state where the agent (133) is activated. FIG. 5 also uses the case where the file is a document as an example for convenience of explanation, but the embodiments of the present disclosure are not limited to documents.

[0089] First, a user (110) attempts to open a specific document among the documents in the local storage (137) of a computing device (130) through a web application (131). For opening a document through the web application (131), different actions may be required of the user (110) depending on whether the default application for the extension of the document to be opened is set to an agent (133) (see FIG. 3 and related description).

[0090] When a user (110) requests to open a document through a web application (131) that satisfies pre-set conditions, the agent (133) can retrieve the document from local storage (137) and upload the retrieved document to remote storage (190). Then, the agent (133) can transmit the document opening request, connection information of the web application (131) for opening the document, location information of the document stored in remote storage (190), user authentication information of a pre-specified method, etc., to the web application (131) to enable the document opening to be executed.

[0091] A web application (131) attempts to open a document by interacting with a web application server (170) based on received information, and when the web application server (170) transmits a document retrieved from remote storage (190) to the web application (131), the web application (131) can execute opening the received document and provide it to a user (110).

[0092] When the user (110) finishes editing the document through the web application (131) (or terminates the web application (131)) or the user (110) requests to save the document (or requests automatic document saving at any interval), the edited document, which is a product reflecting the editing results, can be returned from the web application server (170) to remote storage (190).

[0093] The agent (133) can download an edited document from remote storage (190) and update the document before editing started, which is stored in local storage (137), with the downloaded edited document.

[0094] According to an embodiment, the agent (133) may receive document opening requests only for document files located in a pre-specified local disk volume (e.g., D:, E:, F:, etc.), a specific storage area within the local disk (e.g., Desktop, Downloads, My Documents, etc.), or a network drive (e.g., / 192.168.200.100 / , etc.) according to the agent's settings, thereby restricting editing and viewing through the web application (131) only when the document is located in a specific location. Additionally, according to an embodiment, when a user (110) creates a new file via a context menu in the specific location using a file manager, etc., the agent (133) may automatically perform the operation of transmitting the created file to remote storage (190) and opening it through the web application (131).

[0095] According to an embodiment, the agent (133) can edit and view the document within the computing device (130) through a web application (131) regardless of whether the document exists in a local storage (137), and may create a new edited file in a specific folder within the pre-designated local storage (137) at the time the document within the remote storage (190) is finally updated, or restrict the update so that if there is an identical file in the folder, it is updated.

[0096]

[0097] The embodiments of the present disclosure described above can be implemented as computer-readable code on a medium on which a program is recorded. Computer-readable media include all types of recording devices in which data that can be read by a computer system is stored. Examples of computer-readable media include HDD (Hard Disk Drive), SSD (Solid State Disk), SSD (Silicon Disk Drive), ROM, RAM, CD-ROM, magnetic tape, floppy disk, optical data storage device, etc.

[0098] The descriptions and examples of one or more embodiments provided herein are not intended to limit or restrict the scope of the technical concept of the claimed disclosure. The embodiments, examples, and details provided herein are deemed sufficient to transfer ownership and to enable the configuration and use of the optimal mode of the claimed invention. The claimed invention should not be interpreted as being limited to any of the embodiments, examples, or details provided herein. Various features (structural and methodological), whether shown and described together or individually, may be optionally included or omitted to implement an embodiment having a specific set of features. With the descriptions and examples provided herein, those skilled in the art may devise modifications, alterations, and alternative embodiments that fall within the spirit of the comprehensive mode of the general concept of the invention as embodied herein, without departing from the comprehensive scope of the claimed invention.

Claims

1. A method performed by a computing device, A step of receiving a request to open a file via a web application for a file stored in the local storage of the computing device; An agent running on the computing device uploads the file to remote storage in response to receiving the file open request; A step of executing a file opening through the web application for the uploaded file; A step of downloading a file processed through the web application from the remote storage; and A step of updating the file stored in the local storage with the downloaded file; A method including 2. In Paragraph 1, The above receiving step is, A step of receiving user input corresponding to a first action of a user for a file among the files stored in the local storage that has an extension for which the default application is not set as the agent; In response to received user input, the step of providing a list of services including opening a file through the web application—wherein opening a file through the web application is a function provided by the agent; and Based on the above service list, a step of receiving a request to open a file through the web application; A method including 3. In Paragraph 1, The above receiving step is, A step of receiving user input corresponding to a second action of the user for a file among the files stored in the local storage that has an extension set as the agent by the default application; A method including 4. In Paragraph 1, The above upload step is, The agent transmits authentication information to the remote storage, the authentication information including at least one of an authentication token issued by the remote storage or web application server and the user's account information; and A step of uploading the file to the remote storage as authentication is completed based on the transmitted authentication information; A method including 5. In Paragraph 1, The step of executing the above is, The above agent includes the step of providing connection information to the web application for executing file opening through the web application for the uploaded file, and The above connection information includes at least a portion of the location information of the uploaded file within the remote storage and the URL of the web application server linked with the web application. method.

6. In Paragraph 1, The step of executing the above is, The agent transmits authentication information to the web application server, the authentication information including at least one of an authentication token issued from the remote storage or web application server and the user's account information; and A step in which the uploaded file is provided through the web application as authentication is completed based on the transmitted authentication information; A method including 7. In Paragraph 1, The step of executing the above is, A step of activating an exclusive mode that restricts editing or deletion by applications other than the agent for files stored in the local storage; A method that further includes.

8. In Paragraph 7, The above-mentioned updating step is, A step of disabling the exclusive mode after the file stored in the local storage is updated with the downloaded file; A method that further includes.

9. A computer-readable storage medium having a program recorded thereon for executing the method of any one of paragraphs 1 through 8.

10. As a computing device, At least one processor; and Memory for storing instructions executable in at least one processor; Includes, When the above instructions are executed by the at least one processor, the at least one processor, Receiving a request to open a file via a web application for a file stored in the local storage of the above computing device - opening a file via a web application is a function provided through an agent executed by the at least one processor, In response to the receipt of the above file open request, upload the above file to remote storage, and Execute file opening through the web application for the uploaded file above, and Download the file processed through the above web application from the above remote storage, and Updating the file stored in the local storage with the downloaded file Computing device.

11. In Paragraph 10, The above-mentioned at least one processor is, Receiving user input corresponding to the user's first action for a file among the files stored in the local storage that has an extension for which the default application is not set as the agent, and In response to received user input, a list of services including opening a file through the web application is provided, and Based on the above service list, receiving a file opening request through the web application, Computing device.

12. In Paragraph 10, The above-mentioned at least one processor is, Receiving a request to open a document through the web application by receiving user input corresponding to the user's second action regarding a file among the files stored in the local storage that has an extension set as the agent by the default application, Computing device.

13. In Paragraph 10, The above-mentioned at least one processor is, Authentication information including at least one of an authentication token issued from the remote storage or web application server and the user's account information is transmitted to the remote storage, and Uploading the file to the remote storage as authentication is completed based on the transmitted authentication information, Computing device.

14. In Paragraph 10, The above-mentioned at least one processor is, Authentication information including at least one of an authentication token issued from the remote storage or web application server and the user's account information is transmitted to the web application server, and As authentication is completed based on the transmitted authentication information, the uploaded file is provided through the web application. Computing device.

15. In Paragraph 10, The above-mentioned at least one processor is, As file opening is executed through the web application, an exclusive mode is activated for the file stored in the local storage to restrict editing or deletion by an application other than the agent, and After the file stored in the local storage is updated with the file downloaded from the remote storage, the exclusive mode is disabled. Computing device.