If the miscreants are changing passwords, how do you still have access to those accounts? If both you and the miscreants are resetting account passwords, then the miscreants (also) have access to the password-reset paths, or have access to your local password store, or both. If the miscreants are not resetting passwords, then they have access to your password store, or you are using or re-using compromised or guessable passwords. You need to change all of your passwords, particularly on your password-reset paths, on your devices, your carrier password or PIN, everything, and you need two-factor authentication enabled wherever available.