Trying to increase penalties is incredibly stupid. That only makes things worse. Let me be clear There is NO way to stop this kind of breach from happening again.
The problem is that morons believe they will never be robbed. There is no one with perfect security. The more valuable your data, the more likely it WILL be broken into. Every security professional or database designer (AND their bosses) should be required to sign a statement that says this every year.
AI will only make it worse as bad actors / governments will begin to set AI to find the exploits.
The only solution is to prevent companies from collecting and maintaining this level of information.
There was no need for a single database to contain 34 million people's key addresses and key codes to enter residential building. No need for a database to contain more than keycodes for more than a single building. Even if your company owns multiple buildings or runs security for multiple buildings.
The proper solution is to outlaw the creation of such massive databases. You want to contain information on more than 1 million people? Then there should be massive limitations on what it can contain. No passwords at all for something that large. Name, Address and Phone numbers should already be suspect at 1 million entrees.
If you have 34 stores, then keep 34 separate databases that have a different security system for each of them.