A browser-to-kernel exploit chain is alarming not because it is flashy, but because it turns a routine click into a test of every security boundary a mobile platform depends on.
A reported Android exploit chain ties a browser click to deeper system compromise, showing why mobile defense depends on more than app-level protections.