Watermark-based AI-generated image detectors are vulnerable to transfer evasion attacks, even in the absence of access to detection APIs.