The invention discloses a
vulnerability assessment and reinforcement method based on multi-agent cooperative reasoning and related equipment. The method comprises the following steps: a, obtaining reasoning data including reasoning facts and rules; b, taking the
penetration test host as an initial node, taking a
test target as a termination node, and generating a potential
attack path through an
attack path reasoning agent; c, removing repeated paths by using an
attack path deduplication agent; d, performing prefix sub-path recursive reasoning on the residual paths by the sub-path exploration agent to generate extended attack sub-paths; e, removing repeated paths in the extended sub-paths through a sub-path duplicate removal agent; f, replacing the initial node with the reasoning initial node of the remaining extended sub-paths, recursively executing the steps b to f, exiting the current
recursion stage when no new extended sub-path is added, and terminating
recursion until no new potential attack path is added, so as to obtain a final attack path set; and g, recording
vulnerability utilization frequency in the set, and selecting
vulnerability reinforcement according to the vulnerability utilization frequency. According to the method, the problems of insufficient understanding of massive
network configuration information, attack path combination explosion and repair decision optimization under service constraints can be solved, and dynamic deduction and
active defense of
network attack paths are realized.