Someone start a timer for the first 0 day exploit involving this
(Everyone should stop using SMS for that anyway, btw.)
Best 2FA is a hardware device like YubiKey. I have a handful of YubiKeys, that I use in important places. Tying multiple YubiKeys to an account rather than just one is preferable IMO, because it lessens the risk of being locked out of your account when you lose a YubiKey or it breaks.
My setup for the next few years will be: Bitwarden to store passkeys, passwords and sensitive data and a Yubikey that I login to Bitwarden with.