I would like to suggest stronger authentication for both the Web Account & In-game Account
Specifically for the Web Account
The addition of SMS or E-Mail Verification during Login (aka: MFA or 2FA (options for "Always" or "From an unrecognized device)
The addition of an Authenticator MFA/2FA (like Google Authenticator)
The In-Game Account
The use of symbols and special characters in both the Account ID & Password