Heartily disagree. Regulations are what make most hacks possible to begin with. If companies weren't required to store so much of our personal information and payment details, there wouldn't be as much for hackers to steal.
Take this place, for example. If this forum gets hacked, I don't have to worry about identity theft (my real-world identity, that is) or someone getting a hold of my payment details. Aside from my IP address and an email address, my personal information is not tied to this website. That's a rare thing these days.
But if an online retailer gets hacked and I happen to use that service, then I have a problem, because they've likely got my real name, my physical address, probably my phone number and my card details. Everything a nefarious actor needs to commit identity theft or steal my money. And the regulations tell companies they need to keep all that info stored, like a nice big lucrative pile of hidden treasure. The world would be a much safer place if it didn't work like that.