I have met multiple cybersecurity experts, and they really were experts and in general very intelligent and knowledgeable people, that have fallen for very obvious scams. One of them was one of those gift card scams which in my eyes is possibly the most obvious one.
I myself have almost fallen for a well crafted phishing attack, the only reason I never ended up putting in my card details was that I was technical enough to know that a generic URL with no query params can't possibly have my tracking code pre-filled on a page I've never been to before. Had the scammers just made me enter my own tracking code, or if I didn't know what a query param is, I 100% would've fallen for it.
My point is that no one is immune to a momentary lapse in judgement or just plain bad luck. You can be an expert, extremely intelligent, whatever, all it takes is 5 minutes of weakness to get you, whether that's because you slept bad, had something else on your mind, weren't being diligent enough (it's impossible to be diligent 24/7 after all) or any other myriad list of reasons.
It's easy to put the blame on the victims here, but with generative AI the line between reality and fabrication is getting thinner and thinner. I'm a massive AI skeptic (just check my comments here), but I'm 100% positive that sooner or later we'll hit a stage where it's quite literally impossible to discern an AI fabrication from a real event unless you witnessed it in person yourself. You won't be able to trust images, or audio or even videos of your loved ones unless you basically see them send it to you, and even then there's no guarantee the final footage isn't doctored by the phone in some way.
So sure, people need to smarten up a bit, but we also need to start thinking about these problematic issues with AI sooner rather than later, cause things are only going to get worse, and fast.