I saw that, the work done to get WolfSSL to work is truly examplary on how to keep things going.
Do post a link to that SHA256 patch. I suppose it is possible to compile and generate an unsigned 3rd party cryptographic services DLL (CAPICOM) if someone truly wants really old software to work everywhere.
TLS needs to be re-vitalized in general for SMTP and other such protocols as well.
The browsers mentioned in this thread: https://msfn.org/board/topic/178588-tls-13-in-winxp-sp3-poss... have all stopped building for XP as of today. Happy to try new builds and let people know it goes.