If you use common sense and a bit of clever browsing you'll be fine; If you see a link to what appears to be Newgrounds think for a second; "If I was logged in to see this link, why do I need to log in again?". I've never as far as I know suffered from "hacking" or phishing and I'm really sloppy with security, as long as you use different levels of passwords, don't bother with security questions for email accounts and make sure whatever site you're visiting is what you think it is you'll be fine.
Another "trick" that can be used is people create sites that look legitimate, for example a file hosting site, but they require you to register; so you might think it's fine but they could potentially be using that as a front for password stealing, I could quite easily put together a site now and gather up a few hundred passwords if I wanted to; there are so many methods of doing it. People fall for it because they have some sort of stupid understanding of security: Clicking links is fine, going to a page for phishing is fine, entering your information is not, so many mods seem to be saying "Don't click these links!" which is making everyone think "oh gosh if I click my account will disappear!".