I guess the natural response would be that the companies running these myriad chains simply wouldn't care about abstract cybersecurity concerns like 51% attacks, but instead selling services to users. Just consider all of the companies today which have horrible security. The main factor that they care about is whether their business will get attacked in practice, which is infrequent enough that it always makes the news.