I've now seen four articles in a range of publications using the xz incident to say that same thing about FOSS. Here's one in a defense industry publication:
https://www.defenseone.com/ideas/2024/04/how-fix-militarys-s...
When it appears in diverse multiple places simultaneously, I generally believe someone is coordinating a media campaign. You may think that's paranoid but look at the merits of the argument: how else is it explained? They didn't coincidentally think of the exact same argument, especially when FOSS's reputation has been well-established for a long time - why now, for this particiular vulnerability, are all these people suddenly expressing doubts? And they didn't read each other's articles: these articles need to be thought of, written, edited, and published.
You (those reading on HN) needs to push back and point out the absurdity of the argument now. Otherwise, even if it doesn't cause major changes, it will plant a seed - FUD, using the old IBM technique. Next time there's a incident, they will just keep beating that drum, as for-profit companies make another reach for more power. I'm sure others here will point out plenty of flaws in the argument; biggest of all is that proprietary software has the same problems - you can list them with ease.
Who is behind it? We may know when the first one says they are discontinuing using FOSS.
EDIT: Another reason to think it's coordinated: It's absolute BS. Nobody in IT would seriously make this claim. Everyone uses FOSS one way or another, and everyone has seen plenty of awful proprietary software. It's a deception intended for the uninformed outside IT.
Think about it: Many people saying the truth simultaneously makes sense. But for many people to come up with the same BS - and any IT professional is deceiving people knowingly - that takes coordination.