Fake exchanges should be avoided, it can be a very fake one with its own name or it can be a ghost exchange that have a similar name to the existing exchanges.
About Ponzi scheme and other hyip, I still always surprised that many people know this and well conversant with it, but they are still buying new coins that are highly risky. Some cryptocurrencies are also pumped and dumped by developers, making new investors to lose. It was a surprise that a well recognized coin, terra luna was also a pumped and dumped coin.
Two-factor authentication for all your accounts
The 2FA app should not be on your device used for the accounts, it should be on different device, if no internet connection, it would b better. Also going for hardware authenticator is secure.
Installing an upto date anti virus software
This can help against some ads as well, but for ads blocking, I will recommend ublock origin.
Stay away from malicious links or attachments you come across on the web
This is as the same as to be careful of big companies search engines like Google, be careful of their link ads