Tesla is an exception to this: it has a chip that converts high level commands, like stop to low level CAN commands (stopping slowly)

it's still going ultimately to the can: game over just the same.

the problem is not known systems failing. it's malicious actors that are also on the can network.

Did you look at the white hat presentation about Tesla from years ago? It's not that hard to take over the Tesla entertainment system, but the security was based on the command translator chip instead of securing the entertainment system.

