I'm with Milo, the only safe way to use unsupported software is to not take it on-line.
Any website is a potential risk. Doesn't matter if they're a multinational company with security coming out the wazoo they aren't infallible and neither is the web serving software they use.
Hands up who is still using WinXP? Only 21 months left to decide what to replace it with!