Update [08/01/2014]:
I've successfully flashed a custom kernel on my device. This trips knox counter & isn't 100% related to kexec, but it has the same objective (loading custom kernel on the locked-bootloader devices). However, the bootloader makes security check & blocks the installed kernel with the "unauthorized software by VZW" warning. Then, I tried to patch the kernel to remove this security check, but my device was HARD BRICKED. Now, I've created a General thread for
how to recover from a HARD BRICK. This is definitely a very promising info for testing bootloader exploits.