Not sure where these internet rumors started about security risks with XP. I have it on my PC, and Win 7 on my laptop. I never once had any issues w/ this, and never personally heard of anyone that did. People say this and that, but it ain't happening in my experience. You can put a bot on any computer at any time, regardless of browsers or operating systems. In any case, I highly recommend switching to Brave for your browser. It's based on the Chromium platform, but is not Chrome. It doesn't track you, is faster than Chrome, has a built in ad blocker, and a private window as well as a private window with Tor.
But, it won't run with XP unless you build it from the source code at github. You can also run Epic on your XP machine, as well as Baidu, UC, Opera (which I do not recommend because of the way they track you), K Meleon and a lot of others.
Speaking of tracking, if you have gmail, stop using it, and use google as little as possible. I found a free encrypted email service from Switzerland called protonmail that works really well. It's double encrypted, so even they do not know who their clients are, nor do they have a log of their users, which is pretty cool. They also have a free VPN that I like.
Win 7 is really not so bad. You have to tell it to stop updating and do some adjustments here and there to keep MS out of your life, but in general it runs as well as XP.