Zum Inhalt
Offizielles MASTR Logo MASTR
Menü

1997 / 2002 / REFERENCE

Hashcash: proof of work before Bitcoin

A computational postage stamp for internet abuse became one ingredient in a different system: public transaction ordering.

Published 20 September 2026 · 2 min read

Referenztext auf Englisch · Navigation in 7 Sprachen

A sender searches for a valid proof; a recipient checks it. The work prices an action, not the truth of the message.
A sender searches for a valid proof; a recipient checks it. The work prices an action, not the truth of the message.
Auf dieser Seite
  1. The problem was cheap abuse
  2. Work is a cost, not a truth detector
  3. What Bitcoin added
  4. Read the dates correctly

The problem was cheap abuse

Adam Back’s 2002 paper dates the original Hashcash proposal to May 1997. Its target was the low cost of abusing services such as email and anonymous remailers. A sender performs a computational task and presents a token that a recipient can check cheaply. The asymmetry matters: making every attempted message slightly expensive can change the economics of bulk abuse without making verification equally expensive. [1]

Work is a cost, not a truth detector

A proof of work establishes that a computational condition has been satisfied. It does not establish that a message is honest, that its sender has a good reputation or that the requested action is safe. An attacker with sufficient resources can still perform the work. The useful question is therefore which behaviour the added cost discourages, and at whose expense. A project describing something as “secured by proof of work” still needs to explain what is being verified.

Before Bitcoin: different design problems
Erklärungsgrafik mit vereinfachten Abläufen und genannten Annahmen; kein Beleg für einen konkreten Vorfall. Grafik in voller Grösse öffnen ↗

Before Bitcoin: privacy, digital cash and the missing agreement →

What Bitcoin added

Bitcoin’s white paper explicitly draws on Hashcash for its proof-of-work construction, then connects work to a chain of transaction records and a rule for selecting the history with the most accumulated work. That addresses a different problem from pricing an email: agreeing on transaction order without asking a central payment operator to choose it. Hashcash itself should not be described as an earlier Bitcoin blockchain. [2]

Read the dates correctly

The proposal and the later paper have different dates: 1997 and 2002. A historical timeline should preserve that distinction instead of treating publication of the paper as the first appearance of the idea. The broader lesson for research is to separate a primitive, its implementation and the system built around it. A reusable technical ingredient is not evidence that 2 systems have identical security assumptions.

Quellen und Methode

  1. Adam Back: Hashcash, 2002 paper
  2. Satoshi Nakamoto: Bitcoin white paper, section 4

Weiterlesen

MASTR

Unabhängige Recherche unterstützen

Die Untersuchungen, Originalbelege und Anleitungen hier sind frei zugänglich. Freiwillige Spenden finanzieren die Recherche mit und helfen, die MASTR-Tools weiterhin anzubieten.

Wallet öffnen