Disappointed that my LD_PRELOAD exploit - still unpatched after 20 years! - did not make the list:
marek@mrnew:~$ unshare -Ur
root@mrnew:~#
Not only it's easier to do than LD_PRELOAD these days, you actually _do_ get real elevated capabilities.And I've done a similar thing for an integration test framework for low level daemons, so I know very well how much of a pain it is to get close to emulating "oh yeah, you're totally root" to processes via LD_PRELOAD.