Zcash was introduced by Ben-Sasson et al. in [BCGGMTV14].

Zooko Wilcox sets the stage by giving a basic non-technical introduction to (the internals of) Zcash in his talk "ZCash Introduction" (no slides) at the 6th Technion Summer School on Cyber and Computer Security: Decentralized Cryptographic Currencies and Blockchains, 10-14 September 2017, Technion, Israel:

From the many cryptocurrency- and especially Zcash-related talks at this summer school, the following 3-parts lecture by Zcash inventor Eli Ben-Sasson explains the mathematical and cryptographical foundations of Zcash: zk-SNARKs and zk-STARKs:

Part 1 of that series is Eli's talk "Zcash, SNARKs and STARKs -- Crypto-Proofs for Crypto-Currencies" (no slides):

Part 2 covers mathematical foundations: "STARKS I: Arithmetization" (no slides):

Part 3 covers [BBHR18] in "STARKs II: Low Degree Testing" (no slides):

Two more videos from the same summer school are worth watching. The first one is a primer on ZK-Proofs, followed by an application, the ANONIZE protocol. The second one is a live demo of Zcash by Zooko Wilcox:


  • [BCGGMTV14] Eli Ben-Sasson, Alessandro Chiesa, Christina Garman, Matthew Green, Ian Miers, Eran Tromer, Madars Virza: Zerocash, Decentralized Anonymous Payments from Bitcoin (extended version). (original pdf from ieee, extended pdf via iacr.org 2014/349 eprint, extended pdf alternative source)
  • [BBHR18] Eli Ben-Sasson, Iddo Bentov, Yinon Horesht Michael Riabzev: Scalable, transparent, and post-quantum secure computational integrity. March 6, 2018. (full pdf via iacr.org 2018/046 eprint)
  • [Zcash] Zcash Privacy-protecting Digital Currency (homepage)