It’s been a while since we published our last Security Fix Pop Quiz, a periodic exercise to see whether you’ve updated your computer with the proper security updates. Usually when we do these quizzes I focus on the latest updates for third-party software programs, patches designed to guard against attackers who try to install malicious software using known security holes in these widely-used applications. This time around, however, I want to give readers more perspective about why applying these updates are so critical, by looking through the lens of the criminal masterminds behind “Grum,” one of this year’s largest spam botnets, or groupings of hacked Microsoft Windows PCs typically used to relay junk e-mail. But what exactly is it that makes this malware family so successful? Put simply, it observes the old adage, “If at first you don’t succeed, try, try again.” Indeed, Grum is incredibly tenacious: the Web sites