~
The first and foremost thing is to use Two-Factor Authentication, which is available almost in every platform these days, we even have it on this forum. Two-Factor will not let an attacker gain access to your account even if they manage to hack into your email and resets the password, because they will still need the Two-Factor code to get in.
It actually isn't accurate regarding the 2FA feature on this forum if your email gets hacked. Once you use the forgotten password function, you can easily bypass or remove the 2FA entirely. The security depends completely on how strictly every platform handles that bypass. Some exchanges will let you disable the 2FA once you reset the password, but they will lock your funds for a couple of days as a safety measure.
If you use the forgotten-password function, then there's an option to remove the 2FA. So 2FA does not provide any protection in case of a compromised email. Make sure that your email address is secure.
The second thing is to use one email for important stuff such as financial apps and platforms, and you shouldn't use the same email elsewhere. When you have to use other platforms, make sure you create a different email address to use for that, so that even if one of the platforms you are trying to use has evil intentions, they shouldn't be able to find anything connected to that email once they hack into it.
You can't just create unlimited email addresses anymore. Services like Google pretty much force you to use a phone number when you're setting up a new account, and honestly, I wouldn't be surprised if they start forcing KYC in the future. Making a brand new address for every single app just isn't a realistic solution.
Make sure that you change your password often and enable 2FA for your email account. If you get locked out, you can only recover it using backup codes or through your recovery email address. Taking these steps is a much better option than creating multiple email addresses for every single application.