Given the number of systems infected, if you could push code that rebooted every client into a compromised state you’d still have run of some % of the lot until it was halted. That time window could be invaluable.
Now, imagine if you screw up the code and just boot loop everything.
I’d say business wise it’s better for crowd strike to let people think it’s an own-goal.
The truth may be mundane but a hack is as reasonable a theory as “oops we pushed boot loop code to world+dog”.