I don't contest that. But key generation and management is a
thing that is usually above the regular user's pay grade.
So companies usually go the easy way, especially if a PKI trust
chain is involved.
FYI, Wireguard doesn't use PKI infrastructure, unless a commercial company is using it with some other technology to store accounts/keys.
They're the private key is just randomly generated.
- Lynwood