Unified attacks to large language model watermarks: spoofing and scrubbing in unauthorized knowledge distillation