The other way to look at Crowdstrike is that it prevented probably thousands of attacks by ransomware and other adversaries. Then it had a bug which meant you had to visit your computer and manually reboot it, with no data loss or leakage.

Would you rather have to deal with criminals who have invaded your systems wanting ransoms with no guarantee they will restore the data, or not leak private information, or would you rather have to reboot your machines with a complete understanding of what happened and how?