If I remember correctly, if you use Gmail, you can try to brute force it with the three main questions they ask you. An old password you've used before, the day you created your account, and your username. If you can't answer those three questions you can't gain access to your email.
From there there isn't really much anyone can help you with. When you make future accounts, always document them with pen and paper, never have those information on a device. And always have two factor authentication on, people will say it's not hack proof, but know 70% of hackers will stop at that step. After you have that on, make sure you make recovery keys for when you lose your phone number.
Personally, I would recommend making a second email to be your recovery emails. I like to call this a shadow email, I don't use it for anything else, just to recover my emails.
And you are supposed to change your password every six months, if you don't then technically you don't need to be phished to get hacked, because sometimes the hackers already have your account. Especially if people have been using the same password for a decade. So always try to change your password every six to twelve months, and make them unique from each other too. Additionally, every time you do change your password, check your recover email and phone number, hackers love hiding their emails and phone number there.
Always check your information, cause some of it might not be added by you.