The long answer is: you cannot secure the network using another any other work. The work done has to be specifically tied to the previous block on the blockchain (made of up transaction data, which is of course unrelated to proteins or anything else "useful" in the view of the questioner). Otherwise, you cannot demonstrably prove the integrity of the blockchain.
The short answer is: they are doing useful work -- they're securing an increasingly large and distributed financial network.
- Peercoin (http://en.wikipedia.org/wiki/Peercoin), which introduced an alternative concept called proof-of-stake, which essentially dismisses mining in the long run
- Primecoin (http://en.wikipedia.org/wiki/Primecoin), for which the "work" is engineed to be scientifically useful (I'm not sure how useful it actually is)
I really wish the Bitcoin community had seeked more ingenious/efficient alternatives early on... a lot of energy is going to waste now.
Is it? How much does Bank of America spend in energy to keep up its servers? Backups? disaster-recovery setups? That's a significant energy cost, too.
Of course any big corporation or administration is going to have a lot of underused ressources and redundancy but it doesn't mean they burn power "for the sake of it" as bitcoin does.
Also, bitcoin is not a bank, it's supposed to be a currency. If big banks were to switch to bitcoin I don't think they would spend less energy doing all you said. So no matter what you think of bitcoin it's fair to say it's not very "green" so far.
Primecoin is not calculating anything particularly useful from a scientific or medical point of view (Cunningham chains).
* With cash we have to print and distribute cash, and move it around, and run hardware to validate it, and image scan it, and count it, and destroy it. Etc.
* Credit cards require servers, massive backups, authentication procedures, production of specialized hardware, and the same networked infrastructure as bitcoin, as well as server ops, bank managers, customer service. Etc.
* Bitcoin can use any machine, and the same internet as any other program. As chips get faster and more efficient the energy cost goes down.
This is incorrect. The value of the sum total of fees over a certain period, will be equal (or slightly greater) than the cost of the energy required to maintain Bitcoin.
The value of Bitcoin itself is not limited to the amount of energy required to operate it. Confirming a 1M BTC transaction requires the same amount of energy as confirming a 1 BTC transaction, so the cost of the amount of energy expanded is not a limit to the value of Bitcoin.
Not really. Peercoin's security comes from the developer of the system signing every block. It attempts to use a "Proof of Stake" system where ownership of coins controls mining, but the problem with PoS is, ironically, that there is nothing at stake.
In PoW when you attempt to mine you must expend energy and so you should only mine on a consensus which is likely to be the surviving one if you want your work to not be wasted. In PoS the same is not true, and an optimally rational PoS miner will attempt to concurrently mine all forks which he does not hate.
Originally the signed blocks in PPC were supposed to be a bootstrap mechanism until most of the mining was PoS based, but then some clever miner started mining many possible histories and finding ones where he magically got lucky and his coins were the selected stake for all the blocks.
Primecoin's work isn't scientifically useful— no one had bothered describing it as interesting before it got pulled out as a PoW, and it's far less clear that its not trapdoored (that someone knows how to mine it much faster) than the one way function based proof of work.
You can convert basically any stochastic search into a PoW, but not necessarily a good one (e.g. it might have trapdoors).
More deeply, if your mining work has independent value that that dilutes your incentive to mine on the one true best consensus, since you'll still gain that value even if you mine on a losing consensus.
And ultimately the energy is _not_ wasted: It provides security for the system which is shared by all it's users. In Bitcoin you don't mint coins (with enormous energy costs) or print notes, you don't need bank vaults, or armored cars. You don't need to incarcerate counterfitters, fly around agents, or suffer counterfeiting losses. All currencies have operating costs, if Bitcoin's costs are comparatively good is a complicated analysis which I don't think anyone's done.
It seems that the cost of preventing counterfeiting, and other comparable attacks against the conventional financial system, is much lower than than the cost of the proof-of-work calculations done in bitcoin. In fact, by design the cost of these calculations must be significant, otherwise it would be cheap to hijack the bitcoin system.
I'm aware of some alternatives to proof-of-work, but until we see more of this in practice, I will continue to bet on fiat money as the future of money.
Doing a simple google search shows that counterfeiting costs the USA alone $200bn a year which is 1.2% of annual GDP. Current market cap of bitcoin is $10bn. This means that $100m would be comparative. Maybe someone can give me the numbers on mining hardware and electricity prices.
To be completely accurate, we need to include cost of minting physical dollars etc...maybe someone can do a better analysis on all this but I'm highly skeptical that bitcoin costs more to run than conventional financial systems.
Also the correct figure to compare with the market cap of bitcoin is M1 (approx 2.5 Trillion) not US GDP (approx 16 Trillion)
What do you base this assertion on? I have no idea what the US spends annually on preventing counterfeiting. Do you?
David responds, "The work is not useless, it secures the transactions. The public hash chain ensures that Bitcoins can only be spent once... There is currently no known way to make the work more useful. " See http://bitcoin.stackexchange.com/a/334
My concern about bitcoin winding up more expensive is that it's a bit of a red queen's race. Unlike most applications of encryption, attackers and defenders are on even footing (except, like in most human spheres, in that defenders hopefully outnumber any coordinated group of attackers). This means that whatever latest best tech we have for efficiently turning power into hashes, we've still got to burn about the same amount of power to keep things secure (and continually update to the next newest tech). In other spheres, technological process makes doing the same work cheaper - but in bitcoin it stays the same; you've got to run as fast as you can just to stay in the same place.
It may well still be worthwhile, though.
The growth of Bitcoin is nothing but a symptom of the lack of faith most of the world have in the policies of the US Govt, the Fed, their politicians and other Central banks in general. They have proven that they simply can't be trusted.
First you have to have the VISA network in the first place, that's no mean feat. Then there are the banks themselves, hardly trivial. Only then do we get into central banks and financial regulators. All part of the package.
Really though, the fact that every single transaction is broadcast and that every single transaction must be verified by the entire network (in theory) is what kills Bitcoin's energy efficiency. Whenever a new mining rig is brought online, the energy efficiency of Bitcoin decreases -- and Bitcoin is designed to incentivize bringing more mining equipment online.
It is also the fact that ensures it's distributed nature, and the purpose of its very existence in the first place (we have plenty of centralized digital currencies).
> Whenever a new mining rig is brought online, the energy efficiency of Bitcoin decreases -- and Bitcoin is designed to incentivize bringing more mining equipment online.
This is not necessarily true. The efficiency (number of SHA256 operations per joule expanded) will increase over time. It has already increased by a factor of 1000 compared to CPU mining. So it's definitely possible for both the security and the energy efficiency to increase simultaneously.
Worse, the ASICs can't be used to fold proteins when they've finished being used for Bitcoin mining.
For instance, to stay with the protein folding example, maybe bitcoin could have used an algorithm that used similar logic as the one used by the folding@home project but with different input data and expected results. Once the hardware is no longer needed for mining it can be easily repurposed for research.
It makes you wonder if we'll ever hear of anyone turning their bitcoin cluster to this purpose. Perhaps someone unauthorized.
Edit: Downthread, nwh explained why this isn't possible:
> No, they can't crack passwords. They increment a nonce at the end of a supplied string and only return if the nonce results in a low hash. They're not a generic "fast SHA" device like you're thinking.
We all live in the same capitalistic world, for better or worse.
Also, watch Food Inc. http://www.takepart.com/foodinc
The excuse that "Well, nobody forced them. It was their choice." is an elaborate illusion that needs to be done away with. There have been a couple of articles this year about how being poor causes bad decisions, not necessarily vice-versa. I'm glad those articles are being written because it shows at least a few people are starting to realize how the system traps people and others can be convinced it was they're own fault.
"Poor people, generally, make bad decisions—bad in the sense of their long-term physical, mental and financial welfare. But their bad decisions aren't the reason for their poverty. They're caused by it."
@http://killermartinis.kinja.com/why-i-make-terrible-decision...
Growing up poor is bad for your brain
@http://motherboard.vice.com/blog/growing-up-poor-is-bad-for-...
I have heard these arguments, and I don't disagree with them. I think that efforts would be better directed at educating poor people to make better decisions, than to act like a collective hovering mother and try to keep anything bad away from them. And we often end up being exactly wrong about what's good and bad anyway (see: the USDA food pyramid of the last two decades. It turns out we've had it basically upside-down).
This is drifting way off topic of this thread so I won't say more here.
For example, Whole Foods bought and closed a Wild Oats store in the same shopping complex as a Walmart. Less than a year after closure, that Walmart no longer carries organic produce. The closest store with an organic produce selection is 4 miles away.
Whether or not you think organic food is better or worse is irrelevant - Walmart offered a product to compete with another store, and once that competition was gone, they dropped that selection from their store.
I don't think it's unproductive at all.
Maybe instead of spending this energy on computers, we could be using it to build up the infrastructure of the developing world and help them become self-sufficient. I think that would create far more wealth for far more people than Bitcoin ever will.
[1] At least, that's what they tell me. I suppose it depends what you define as power.
My analogy might be a bit convoluted, but my point is that - as you mention - that we're comparing oranges to apples. We're comparing a general-purpose computer to doing a SHA256 hash.
Other designs like the anonymous Bitfury's are hand routed and do a lot better, around 0.8w per gigahash, but although there's skills in doing so, it can't really be applied to anything except for Bitcoin mining.
They're pretty basic on the scheme of things, they're just very costly to get to a fabricator in the short timeframes the community wants.
I don't think that this technology is going to be readily adaptable to anything other than brute-forcing hashes. I don't know of any fundamentally useful engineering or research being generated that would have application elsewhere.
EDIT: Which isn't to say it isn't neat...I just don't think it'll bear fruit anywhere else.
It is a monkey-copy (of the ghetto variety).
This came up on the bitcoin Stack Exchange:
http://bitcoin.stackexchange.com/questions/10421/are-bitcoin...
(I don't know why this is useful, as I am not a mathematician.)
Primecoin's goal is to find chains of prime numbers, like the ones describe at https://en.wikipedia.org/wiki/Cunningham_chain
This is at least more useful than running a double sha on some input to produce some output that is hopefully less than a target t. But a altcoin that does something useful with its proof of work system is still not available.
This would provide a more direct incentive for researchers to make these algorithms faster, and would therefore provide a tangible benefit to society.
https://docs.google.com/file/d/0B3qaT-ZL6aeKOHNEQWdpZEtRYWc/... https://bitcointalk.org/index.php?topic=64421.5
Doesn't the fact that money is being redistributed to technology companies good for technology, by definition?
http://www.bizjournals.com/sanjose/news/2013/11/18/silicon-v...
Also, you're asking how Bitcoin mining, the use of technology, and SV start-ups will directly impact the future. I can't do that.
Of course, I couldn't tell you in the late 90's how a search engine company would lead to better self-driving cars (among other things), or how a company that made paying online popular would lead to electric sports cars and rockets.
I bet convincing most people that Likes and building a better social graph in 2005 would lead to any sort of innovation would have been a stretch too.
Know how a good undergraduate CS degree involves writing hundreds of fully functioning programs? A great graduate EE degree might involve one single functioning piece of silicon.
Know how we bitch about compile time in the minutes or, god forbid, hours? Turnaround time on silicon is weeks at the minimum.
They probably generate a guid and then append a number and increment
Whats the advantage of using a new random number each time?