Sound cool and everything but just some basic boring stuff
Don't click on random links
Double check if it's a legit email
Double check if it's a legit message
Feel sketchy if the message is urgent
Most phone calls are scammers
Be extra careful when giving your personal info online
Most scammers are online, so one good way to filter out scammers is meeting in person
Online people are scammers until you meet them in person
You are as secured as your weakest link
Trade off between convenience and security
Besides these, the rest is password manager
Use strong passwords
At least 20 character long with lower case, upper case, and special character
Don't reuse your password on different website
Use Two-factor authentication (2FA)
Highly recommend using a password manager then guard it with YubiKey. Have a backup YubiKey and you are unbeatable.